From 9dccc10708b0bf6ec8feaf18f4ed75fc082572bc Mon Sep 17 00:00:00 2001 From: Hao Wu Date: Sun, 10 Jul 2016 09:24:53 +0800 Subject: CryptoPkg BaseCryptLib: Init the content of struct 'CertCtx' before use Some fields in structure 'CertCtx' might be used uninitialized in function Pkcs7GetCertificatesList(). This commit makes sure that 'CertCtx' gets initialized before being used. Cc: Long Qin Cc: Ye Ting Contributed-under: TianoCore Contribution Agreement 1.0 Signed-off-by: Hao Wu Reviewed-by: Qin Long Reviewed-by: Ye Ting (cherry picked from commit 07cae0659795b4d6b59f67eabb8426c7c7742318) --- CryptoPkg/Library/BaseCryptLib/Pk/CryptPkcs7Verify.c | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/CryptoPkg/Library/BaseCryptLib/Pk/CryptPkcs7Verify.c b/CryptoPkg/Library/BaseCryptLib/Pk/CryptPkcs7Verify.c index 559610d7b2..efa3796af9 100644 --- a/CryptoPkg/Library/BaseCryptLib/Pk/CryptPkcs7Verify.c +++ b/CryptoPkg/Library/BaseCryptLib/Pk/CryptPkcs7Verify.c @@ -10,7 +10,7 @@ WrapPkcs7Data(), Pkcs7GetSigners(), Pkcs7Verify() will get UEFI Authenticated Variable and will do basic check for data structure. -Copyright (c) 2009 - 2015, Intel Corporation. All rights reserved.
+Copyright (c) 2009 - 2016, Intel Corporation. All rights reserved.
This program and the accompanying materials are licensed and made available under the terms and conditions of the BSD License which accompanies this distribution. The full text of the license may be found at @@ -489,6 +489,8 @@ Pkcs7GetCertificatesList ( OldBuf = NULL; Signers = NULL; + ZeroMem (&CertCtx, sizeof (CertCtx)); + // // Parameter Checking // -- cgit v1.2.3