REF: https://bugzilla.tianocore.org/show_bug.cgi?id=1493 Pkcs7GetAttachedContent() implementation in current CryptPkcs7Verify.c is actually shared by RuntimeCryptLib.inf, SmmCryptLib.inf and BaseCryptLib.inf, which are not correct since there's no use scenario for runtime and AllocatePool() used in this method can only be called in boot time. This patch fix this issue by splitting file CryptPkcs7Verify.c into 3 parts. CryptPkcs7VerifyCommon.c (shared among Base, SMM, Runtime) CryptPkcs7VerifyBase.c (shared between Base, SMM) CryptPkcs7VerifyRuntime.c (for Runtime only) CryptPkcs7VerifyBase.c will have original implementation of Pkcs7GetAttachedContent() as CryptPkcs7Verify.c. CryptPkcs7VerifyRuntime.c provide a NULL version of Pkcs7GetAttachedContent(). No functionality and interface change is involved in this patch. Cc: Ting Ye <ting.ye@intel.com> Cc: Qin Long <qin.long@intel.com> Contributed-under: TianoCore Contribution Agreement 1.1 Signed-off-by: Jian J Wang <jian.j.wang@intel.com> Reviewed-by: Ting Ye <ting.ye@intel.com>
108 lines
3.3 KiB
INI
108 lines
3.3 KiB
INI
## @file
|
|
# Cryptographic Library Instance for DXE_RUNTIME_DRIVER.
|
|
#
|
|
# Caution: This module requires additional review when modified.
|
|
# This library will have external input - signature.
|
|
# This external input must be validated carefully to avoid security issues such as
|
|
# buffer overflow or integer overflow.
|
|
#
|
|
# Note: MD4 Digest functions, SHA-384 Digest functions, SHA-512 Digest functions,
|
|
# HMAC-MD5 functions, HMAC-SHA1/SHA256 functions, AES/TDES/ARC4 functions, RSA external
|
|
# functions, PKCS#7 SignedData sign functions, Diffie-Hellman functions, and
|
|
# authenticode signature verification functions are not supported in this instance.
|
|
#
|
|
# Copyright (c) 2009 - 2019, Intel Corporation. All rights reserved.<BR>
|
|
# This program and the accompanying materials
|
|
# are licensed and made available under the terms and conditions of the BSD License
|
|
# which accompanies this distribution. The full text of the license may be found at
|
|
# http://opensource.org/licenses/bsd-license.php
|
|
#
|
|
# THE PROGRAM IS DISTRIBUTED UNDER THE BSD LICENSE ON AN "AS IS" BASIS,
|
|
# WITHOUT WARRANTIES OR REPRESENTATIONS OF ANY KIND, EITHER EXPRESS OR IMPLIED.
|
|
#
|
|
##
|
|
|
|
[Defines]
|
|
INF_VERSION = 0x00010005
|
|
BASE_NAME = RuntimeCryptLib
|
|
MODULE_UNI_FILE = RuntimeCryptLib.uni
|
|
FILE_GUID = 78189cc0-727d-46a4-84ea-f7dd860de64a
|
|
MODULE_TYPE = DXE_RUNTIME_DRIVER
|
|
VERSION_STRING = 1.0
|
|
LIBRARY_CLASS = BaseCryptLib|DXE_RUNTIME_DRIVER
|
|
CONSTRUCTOR = RuntimeCryptLibConstructor
|
|
|
|
#
|
|
# The following information is for reference only and not required by the build tools.
|
|
#
|
|
# VALID_ARCHITECTURES = IA32 X64 ARM AARCH64
|
|
#
|
|
|
|
[Sources]
|
|
Hash/CryptMd4Null.c
|
|
Hash/CryptMd5.c
|
|
Hash/CryptSha1.c
|
|
Hash/CryptSha256.c
|
|
Hash/CryptSha512Null.c
|
|
Hmac/CryptHmacMd5Null.c
|
|
Hmac/CryptHmacSha1Null.c
|
|
Hmac/CryptHmacSha256Null.c
|
|
Cipher/CryptAesNull.c
|
|
Cipher/CryptTdesNull.c
|
|
Cipher/CryptArc4Null.c
|
|
Pk/CryptRsaBasic.c
|
|
Pk/CryptRsaExtNull.c
|
|
Pk/CryptPkcs5Pbkdf2Null.c
|
|
Pk/CryptPkcs7SignNull.c
|
|
Pk/CryptPkcs7VerifyCommon.c
|
|
Pk/CryptPkcs7VerifyRuntime.c
|
|
Pk/CryptDhNull.c
|
|
Pk/CryptX509.c
|
|
Pk/CryptAuthenticodeNull.c
|
|
Pk/CryptTsNull.c
|
|
Pem/CryptPem.c
|
|
|
|
SysCall/CrtWrapper.c
|
|
SysCall/TimerWrapper.c
|
|
SysCall/RuntimeMemAllocation.c
|
|
|
|
[Sources.Ia32]
|
|
Rand/CryptRandTsc.c
|
|
|
|
[Sources.X64]
|
|
Rand/CryptRandTsc.c
|
|
|
|
[Sources.ARM]
|
|
Rand/CryptRand.c
|
|
|
|
[Sources.AARCH64]
|
|
Rand/CryptRand.c
|
|
|
|
[Packages]
|
|
MdePkg/MdePkg.dec
|
|
CryptoPkg/CryptoPkg.dec
|
|
|
|
[LibraryClasses]
|
|
BaseLib
|
|
BaseMemoryLib
|
|
UefiBootServicesTableLib
|
|
UefiRuntimeServicesTableLib
|
|
DebugLib
|
|
OpensslLib
|
|
IntrinsicLib
|
|
PrintLib
|
|
|
|
#
|
|
# Remove these [BuildOptions] after this library is cleaned up
|
|
#
|
|
[BuildOptions]
|
|
#
|
|
# suppress the following warnings so we do not break the build with warnings-as-errors:
|
|
# C4090: 'function' : different 'const' qualifiers
|
|
#
|
|
MSFT:*_*_*_CC_FLAGS = /wd4090
|
|
|
|
# -JCryptoPkg/Include : To disable the use of the system includes provided by RVCT
|
|
# --diag_remark=1 : Reduce severity of "#1-D: last line of file ends without a newline"
|
|
RVCT:*_*_ARM_CC_FLAGS = -JCryptoPkg/Include --diag_remark=1
|