Michał Trojnara
ded1f7aa67
Use native HTTP client with OpenSSL 3.0 or later ( #378 )
...
Co-authored-by: olszomal <Malgorzata.Olszowka@stunnel.org>
2024-04-09 19:33:31 +02:00
Steve McIntyre
6ad2679f17
Read the password from stdin if desired
...
Use the common convention: "-" means to use stdin
Signed-off-by: Steve McIntyre <steve.mcintyre@pexip.com>
2024-03-28 21:33:01 +01:00
olszomal
4776f43f04
Improved manual
2024-03-26 18:28:02 +01:00
olszomal
d9db038c65
Sort central directory entries in ascending order by offset
2024-03-20 11:19:46 +01:00
Michał Trojnara
e8ef027776
Simplify base64 decoding in script.c
2024-03-11 12:10:20 +01:00
olszomal
0a0761746f
Fixed memory corruption
2024-03-08 16:59:34 +01:00
olszomal
f51e2a4869
Intercepted X509_V_FLAG_CHECK_SS_SIGNATURE verify error
2024-03-08 16:59:34 +01:00
olszomal
093ed12c66
Supported CRL decoding in DER and PEM format
2024-03-08 16:59:34 +01:00
olszomal
71a046a2d0
Ignore missing PKCS#9 signing time field (NID_pkcs9_signingTime: 1.2.840.113549.1.9.5) in the CMS_ContentInfo structure.
...
Timestamping time for verification is get from embedded content in this CMS_ContentInfo structure.
2024-03-08 16:59:34 +01:00
olszomal
c73f82b558
Set the NONCE field in a TSA request
2024-03-08 16:59:34 +01:00
Michał Trojnara
b294f5d18f
Initial 2.9-dev commit
2024-03-05 16:34:32 +01:00
Michał Trojnara
e07bb7d6b2
Update workflow components
2024-03-05 15:51:29 +01:00
Michał Trojnara
699bc85d0a
Release 2.8
...
Signed-off-by: Michał Trojnara <Michal.Trojnara@stunnel.org>
2.8
2024-03-03 23:32:15 +01:00
olszomal
192e7a732b
Fixed memory leaks
2024-03-01 17:50:20 +01:00
olszomal
656051676f
Changelog update
2024-02-29 17:57:22 +01:00
olszomal
3998bcabb2
Simplify BIO chain free up and FILE_FORMAT_CTX cleanup
2024-02-28 15:55:25 +01:00
olszomal
fa40c57f80
Simplify checking whether a signature exists
2024-02-28 11:55:21 +01:00
olszomal
0b93a94ffa
Fixed cross-signed root CA certificate
2024-02-28 11:52:49 +01:00
olszomal
105fd3af4a
Fix handling of printf format specifiers
2024-02-27 10:47:58 +01:00
Michał Trojnara
86a594b087
NEWS.md entry for Microsoft PowerShell signing
...
Closes #37
2024-02-22 16:39:57 +01:00
olszomal
1dea73b038
Install python@3.8 on macOS required for the Github Actions CI
2024-02-22 16:14:35 +01:00
olszomal
b661ed08ed
Fix fuzzer error - corrupted data content
2024-02-20 17:48:55 +01:00
olszomal
ead0584611
Disable curl dependence
2024-02-20 17:48:31 +01:00
Michał Trojnara
bd7751147e
Update Windows build documentation
2024-02-20 10:03:47 +01:00
olszomal
1bc7fc36b8
Connect to CRL Distribution Points through the configured proxy when verifying
2024-02-19 12:19:44 +01:00
Zeijlon (ThinLinc Team)
42e9733916
Fix python 3 compatibility in server_http.py ( #350 )
...
Building osslsigncode fails on systems with older versions of Python 3 due to the server_http.py script, part of the test procedure. This script requires the ThreadingHTTPServer module, introduced in Python version 3.7.
A workaround has been implemented to create a ThreadingHTTPServer locally, ensuring backward compatibility with older Python versions.
2024-02-16 12:39:48 +01:00
olszomal
b2024cee9d
Add -ignore-cdp option to help
2024-02-16 12:30:29 +01:00
olszomal
9d152b8477
Fix url resource leak, CID 1583652, 1583653
2024-02-16 12:30:29 +01:00
olszomal
7a02d51a83
Print failed certificate chain retrieved from the signature
2024-02-15 13:07:02 +01:00
olszomal
dac68a3a4d
Disable CRL Distribution Points online verification
2024-02-15 12:30:50 +01:00
Michał Trojnara
bd1ab77f44
Improve variable names and comments
...
No functional change intended.
2024-02-13 17:39:01 +01:00
olszomal
5ee859db2c
Fixed out-of-bounds access, CID 1583604
2024-02-13 17:20:29 +01:00
olszomal
ee3c51f6d5
Check BIO_write_ex() return value, CID 1583605
2024-02-13 17:20:29 +01:00
Michał Trojnara
cedb8b5798
Print default -CAfile in "osslsigncode -v"
...
Fix #344
2024-02-12 12:31:57 +01:00
olszomal
dcf58a00e7
Fixed getting content
2024-02-12 11:41:08 +01:00
Michał Trojnara
4576895718
Initial script (text) format support
...
See #37 for details.
2024-02-12 10:54:18 +01:00
olszomal
1bdcad619e
Remove http proxy configuration that may change behavior
2024-02-07 13:38:01 +01:00
olszomal
31b046cf98
Fix dereference after null check, CID 1576008
2024-01-24 09:23:55 +01:00
olszomal
f3ac2c0c6f
Fix resource leak, CID 1576007
2024-01-24 09:23:55 +01:00
olszomal
f22c83514c
Simplify obtaining an existing signature and creating a new one
2024-01-23 19:00:22 +01:00
olszomal
44ca1f38e6
PKCS9_SEQUENCE_NUMBER authenticated attribute support
2024-01-23 19:00:22 +01:00
olszomal
0985c47990
Add a new "-index" option to enable verification or addition of attributes to the signature at a certain position
2024-01-23 19:00:22 +01:00
olszomal
aa158e40ec
Fix BIO memory leak
2024-01-10 16:03:08 +01:00
olszomal
5da62de5ef
Fixed adding signing time
2024-01-08 11:48:10 +01:00
Michał Trojnara
4d08fbb2c1
Only use IPv4 127.0.0.1 for tests
...
Fix #331
2023-12-21 11:33:48 +01:00
Michał Trojnara
98b004edda
Ignore garbage in PE sigpos/siglen
2023-12-20 11:26:50 +01:00
olszomal
34bf3bc525
tests for extract-data command
2023-12-19 13:07:19 +01:00
olszomal
64e1bba96b
Add a new command extract-data to extract a PKCS#7 data content to be signed
2023-12-19 13:07:19 +01:00
olszomal
46bcaa9d88
Skip a null stream warning
2023-12-18 10:14:51 +01:00
olszomal
867e0d446d
Fixed APPX file specific: attach-signature command
2023-12-18 10:14:29 +01:00