Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Audit-202409 #119

Merged
merged 24 commits into from
Nov 28, 2024
Merged

Audit-202409 #119

merged 24 commits into from
Nov 28, 2024

Conversation

bluele
Copy link
Member

@bluele bluele commented Nov 18, 2024

No description provided.

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
LCP-7: Fix to use `rand::rngs::OsRng` instead

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
LCP-8: Add `panic-logging` feature to `enclave-runtime` crate

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
LCP-1: zeroize `EnclaveKey` and `UnsealedEnclaveKey` after using them

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
LCP-2: Use `Signature::parse_standard_slice()` to parse signature bytes

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
…sealed_data_size`

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
LCP-3: Fix to apply assertions instead of returning `u32::MAX` in `calc_raw_sealed_data_size`

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
S-1: Fix to remove redundant check with `rsgx_raw_is_outside_enclave()`

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
S-{2,3}: Fix audit suggestions

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
* bump git2 version
* bump h2 crate to 0.3.26

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
…or returned from `tls.read_end_to_end()`

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
* bump shlex to v1.3.0
* bump tonic to v0.9
* bump `env_logger` and `clap` versions
* bump ouroboros version

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
* bump `tiny-keccak` to v2
* bump sha2 to v0.10.8

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
@bluele bluele added the audit label Nov 21, 2024
LCP-5: Update crate dependencies

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
LCP-5: Bump rustls to v0.23.18

Signed-off-by: Jun Kimura <jun.kimura@datachain.jp>
@bluele bluele marked this pull request as ready for review November 27, 2024 03:38
@bluele bluele merged commit a41fceb into main Nov 28, 2024
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant