96 Commits

Author SHA1 Message Date
openeuler-ci-bot
19e2f998a8
!296 sync 24.03 LTS patch list
From: @JiaboFeng 
Reviewed-by: @imxcc 
Signed-off-by: @imxcc
2024-12-12 08:45:31 +00:00
Adttil
da93b0b1f2 vdpa: support vdpa blk/scsi device boot 2024-12-12 16:25:48 +08:00
hanliyang
dbb569a545 Support live migration for Hygon CSV1/2/3 guests, fix nesting #VC
The live migration of Hygon CSV1/2/3 guest depends on the KVM
hypercall KVM_HC_MAP_GPA_RANGE, add code to sync page enc/dec
status to KVM.

The MMIO routine of VC handler will get memory encrypt status to
validate MMIO address. MemEncryptSevGetEncryptionMask() will enable
interrupt while interrupt must be disabled during VC. During DXE
stage, VC routine as below:
  CcExitHandleVc
    -> MemEncryptSevGetAddressRangeState
      -> MemEncryptSevGetEncryptionMask->PcdGet64(PcdPteMemoryEncryptionAddressOrMask)

Signed-off-by: hanliyang <hanliyang@hygon.cn>
2024-12-12 16:25:36 +08:00
openeuler-ci-bot
ef32b54b56
!291 [openEuler-24.03-LTS-SP1]Hygon: Add support to run in the Hygon CSV3 guest
From: @hanliyang 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-11-26 07:19:54 +00:00
hanliyang
3ab396d92e Add support for Hygon CSV3 guest
Cherry-picked from https://gitee.com/src-openeuler/edk2/tree/openEuler-24.03-LTS

Reference the commit 42da937f6ebc ("Add support for Hygon CSV3 guest")
in https://gitee.com/src-openeuler/edk2/tree/openEuler-24.03-LTS.

Signed-off-by: hanliyang <hanliyang@hygon.cn>
2024-11-12 14:59:56 +08:00
openeuler-ci-bot
9d8e1bd5d8
!285 Fix CVE-2023-45236、CVE-2023-45237
From: @jacob1996 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-10-23 01:25:23 +00:00
ShenYage
c74770f08b Fix CVE-2023-45236、CVE-2023-45237
Signed-off-by: ShenYage <shenyage1@huawei.com>
2024-10-15 23:08:29 +08:00
openeuler-ci-bot
defff199a5
!276 [sync] PR-271: fix CVE-2024-38796
From: @openeuler-sync-bot 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-10-14 03:50:09 +00:00
zhangxianting
c19c4c36f9 fix CVE-2024-38796
(cherry picked from commit e90700e1bbee8afb2e66b8b19bfce953a9146841)
2024-10-14 09:17:12 +08:00
openeuler-ci-bot
fa04b020c9
!268 [sync] PR-223: 增加龙架构支持
From: @openeuler-sync-bot 
Reviewed-by: @imxcc 
Signed-off-by: @imxcc
2024-10-08 03:33:12 +00:00
Xiaotian Wu
d63c53c946 add LoongArch support
backport edk2-platform to build with edk2-2308

Signed-off-by: Xiaotian Wu <wuxiaotian@loongson.cn>
(cherry picked from commit ec60765a8e460c2eb12f2a6f676e1272973ff5ce)
2024-10-08 10:48:29 +08:00
openeuler-ci-bot
82ccc5e6cb
!260 [sync] PR-258: fix CVE-2024-6119
From: @openeuler-sync-bot 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-09-10 01:15:53 +00:00
ShenYage
ec2d7d4e24 Fix CVE-2024-6119
Signed-off-by: ShenYage <shenyage1@huawei.com>
(cherry picked from commit 0319a62de915358a78e38071614c222b59ef738c)
2024-09-09 22:22:48 +08:00
openeuler-ci-bot
ded4bb082a
!251 [sync] PR-249: make EFI_LOADER_DATA executable again
From: @openeuler-sync-bot 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-08-19 02:14:39 +00:00
jiangdongxu
49c06ae7c4 edk2.spec: make EFI_LOADER_DATA executable again
As commit(2997ae387397) make EFI_LOADER_DATA non-executable, old
operation system using old GRUB cannot boot. As we need to support
these operation systems, make EFI_LOADER_DATA executable again.

Signed-off-by: Jiabo Feng <fengjiabo1@huawei.com>
(cherry picked from commit 6ea7aa2a95fb32d6c091084a65b322a49e1f5b1d)
2024-08-14 11:08:59 +08:00
openeuler-ci-bot
7893494e45
!245 [sync] PR-240: Fix CVE-2024-5535
From: @openeuler-sync-bot 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-07-12 01:33:10 +00:00
ShenYage
f9dfcc3871 Fix CVE-2024-5535
Signed-off-by: ShenYage <shenyage1@huawei.com>
(cherry picked from commit 803ea515a2f9a4bf7b1acdd56cfdc8aa4dfb2785)
2024-07-11 21:00:23 +08:00
openeuler-ci-bot
335df91d8f
!233 [sync] PR-228: Fix CVE-2024-1298
From: @openeuler-sync-bot 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-06-13 02:43:49 +00:00
ShenYage
9a7cacf83c Fix CVE-2024-1298
Signed-off-by: ShenYage <shenyage1@huawei.com>
(cherry picked from commit e442c48e58d42e4ba006dbe2d86b401214b70cac)
2024-06-13 09:35:50 +08:00
openeuler-ci-bot
7f96ee217e
!218 Fix CVE-2023-6237、CVE-2024-2511、CVE-2023-45229、CVE-2023-45230、CVE-2023-45231、CVE-2023-45232、CVE-2023-45233、CVE-2023-45234、CVE-2023-45235
From: @jacob1996 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-04-22 12:28:41 +00:00
openeuler-ci-bot
810fea77b0
!203 [sync] PR-187: master分支 修复CVE: CVE-2022-36763、CVE-2022-36764、CVE-2022-36765
From: @openeuler-sync-bot 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-04-17 07:51:52 +00:00
yexiao
36253b5096 Fix some CVE
fix CVE-2022-36763、CVE-2022-36764、CVE-2022-36765

Signed-off-by: yexiao <yexiao7@huawei.com>
(cherry picked from commit 45d7902c879c8a960a59b4d86c97ca7b7c1765c6)
2024-04-17 09:48:12 +08:00
ShenYage
fe1d7a16b1 Fix CVE-2023-6237、CVE-2024-2511
Signed-off-by: ShenYage <shenyage1@huawei.com>
2024-04-16 13:43:19 +08:00
yexiao
e73953fbf1 Fix som CVE
Fix CVE-2023-45229、CVE-2023-45230、CVE-2023-45231、CVE-2023-45232、CVE-2023-45233、CVE-2023-45234、CVE-2023-45235

Signed-off-by: yexiao <yexiao7@huawei.com>
2024-04-16 13:38:38 +08:00
openeuler-ci-bot
bf93641b42
!182 修复CVE: CVE-2023-3446、CVE-2023-3817、CVE-2024-0727、CVE-2023-2975、CVE-2023-6129
From: @Ye-Xiao12 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-03-04 12:54:37 +00:00
yexiao
73840139ff Fix some CVE
CVE-2023-3446、CVE-2023-3817、CVE-2024-0727、CVE-2023-2975、CVE-2023-6129

Signed-off-by: yexiao <yexiao7@huawei.com>
2024-03-01 11:18:10 +08:00
openeuler-ci-bot
d36cfacf44
!172 Added firmware scanning directory mapping for libvirt XML
From: @duyiwei7w 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-02-08 02:11:48 +00:00
duyiwei
a0c638905f Added firmware scanning directory mapping for libvirt XML
Signed-off-by: duyiwei <duyiwei@kylinos.cn>
2024-01-25 17:44:47 +08:00
openeuler-ci-bot
34e91a4d10
!164 upgrade to 202308 for support riscv64 and add a patch to fix build error on the riscv64 obs build environment.
From: @ouuleilei 
Reviewed-by: @caojinhuajy, @yezengruan 
Signed-off-by: @yezengruan
2023-09-13 03:24:54 +00:00
ouuleilei
d3d233a55d upgrade to 202308 for support riscv64 and add a patch to fix build error on the riscv64 obs build environment. 2023-09-12 10:08:28 +08:00
openeuler-ci-bot
2cc854a60f
!150 Fix miss of changelog
From: @Ye-Xiao12 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-08-24 11:39:43 +00:00
yexiao
95521053a1 Fix miss of changelog
Signed-off-by: yexiao <yexiao7@huawei.com>
2023-07-27 03:49:50 +08:00
openeuler-ci-bot
6277244371
!139 solving the compilation failure problem of gcc 12.3.0
From: @JiaboFeng 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-07-14 06:09:36 +00:00
Jiabo Feng
b436e3c8aa solving the compilation failure problem of gcc 12.3.0
reference:
https://github.com/google/brotli/pull/893
https://github.com/tianocore/edk2/pull/2347
https://github.com/tianocore/edk2/pull/2694

Signed-off-by: Jiabo Feng <fengjiabo1@huawei.com>
2023-07-14 10:26:46 +08:00
openeuler-ci-bot
6b32063c62
!130 fix CVE-2022-4304
From: @Ye-Xiao12 
Reviewed-by: @yezengruan, @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-07-07 01:50:37 +00:00
yexiao
f51f632f91 Fix CVE-2022-4304
Signed-off-by: yexiao <yexiao7@huawei.com>
2023-07-03 16:47:22 +08:00
openeuler-ci-bot
4f1df06310
!121 fix CVE-2023-0286
From: @huiyingc 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2023-02-26 07:23:07 +00:00
chenhuiying
4515de537b fix CVE-2023-0286
Signed-off-by: chenhuiying <chenhuiying4@huawei.com>
2023-02-26 14:48:09 +08:00
openeuler-ci-bot
36448b1372
!117 fix CVE-2023-0215
From: @huiyingc 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2023-02-26 05:42:26 +00:00
chenhuiying
e25a53b4bb fix CEV-2023-0215
Signed-off-by: chenhuiying <chenhuiying4@huawei.com>
2023-02-26 13:12:03 +08:00
openeuler-ci-bot
c1494de051
!106 fix CVE-2023-0401
From: @shaodenghui 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2023-02-26 03:56:31 +00:00
s00803682
1506bbc136 fix CVE-2023-0401 2023-02-26 11:11:38 +08:00
openeuler-ci-bot
0e82568e5f
!104 fix CVE-2022-4450
From: @shaodenghui 
Reviewed-by: @huiyingc, @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-02-25 10:26:27 +00:00
s00803682
f6a7530990 fix CVE-2022-4450 2023-02-25 18:07:13 +08:00
openeuler-ci-bot
f67a11893a
!98 fix CVE-2021-38578
From: @huiyingc 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2022-11-29 03:55:42 +00:00
chenhuiying
d212ca2421 CVE-2021-38578 2022-11-29 10:43:21 +08:00
openeuler-ci-bot
71f6054b22
!90 fix CVE-2019-11098
From: @huiyingc 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2022-09-29 07:08:41 +00:00
chenhuiying
6e56773a39 fix CVE-2019-11098
Signed-off-by: chenhuiying <chenhuiying4@huawei.com>
2022-09-29 09:54:27 +08:00
openeuler-ci-bot
1857e59049
!87 Enable TPM for edk
From: @miaoyubo 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2022-06-14 02:46:50 +00:00
miaoyubo
df8d559553 Enable tpm for edk
Enable TPM for pcr 0-7
2022-06-14 10:30:34 +08:00