Adjusted sources and sanitizer of UnsafeCertTrust taint tracking config

This commit is contained in:
Tony Torralba
2021-06-22 17:53:15 +02:00
parent e43fff2d30
commit 5d4cd70f8c
6 changed files with 463 additions and 25 deletions

View File

@@ -23,7 +23,7 @@ class SslEndpointIdentificationFlowConfig extends TaintTracking::Configuration {
override predicate isSink(DataFlow::Node sink) { sink instanceof SslConnectionCreation }
override predicate isSanitizer(DataFlow::Node sanitizer) {
sanitizer instanceof SslConnectionWithSafeSslParameters
sanitizer instanceof SslUnsafeCertTrustSanitizer
}
}