From 346a2f269eedda90093c19f314dd3af1fd58d1fc Mon Sep 17 00:00:00 2001 From: Brandon Stewart <20469703+boveus@users.noreply.github.com> Date: Wed, 26 Jul 2023 13:48:42 -0400 Subject: [PATCH] Update UnsafeHmacComparison.ql --- ruby/ql/src/experimental/cwe-208/UnsafeHmacComparison.ql | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/ruby/ql/src/experimental/cwe-208/UnsafeHmacComparison.ql b/ruby/ql/src/experimental/cwe-208/UnsafeHmacComparison.ql index 4192b617863..3efed3580aa 100644 --- a/ruby/ql/src/experimental/cwe-208/UnsafeHmacComparison.ql +++ b/ruby/ql/src/experimental/cwe-208/UnsafeHmacComparison.ql @@ -28,7 +28,7 @@ class OpenSslHmacdigest extends DataFlow::Node { } // A call to OpenSSL::HMAC.new -class OpenSsslnewHmac extends DataFlow::Node { +class OpenSslnewHmac extends DataFlow::Node { OpenSsslnewHmac() { this = API::getTopLevelMember("OpenSSL").getMember("HMAC").getAnInstantiation() } @@ -46,7 +46,7 @@ class Configuration extends DataFlow::Configuration { override predicate isSource(DataFlow::Node source) { source instanceof OpenSslHmacHexdigest or - source instanceof OpenSsslnewHmac or + source instanceof OpenSslnewHmac or source instanceof OpenSslHmacbase64digest or source instanceof OpenSslHmacdigest or source instanceof OpenSslHmactos