Mathias Vorreiter Pedersen
|
4d3377b116
|
Merge branch 'main' into promote-unsigned-difference-expression-compared-zero-to-code-scanning
|
2024-07-25 14:00:05 +01:00 |
|
Geoffrey White
|
eaf2949857
|
Merge pull request #17054 from geoffw0/scanf
C++: Fix false positives in cpp/incorrectly-checked-scanf
|
2024-07-24 10:51:25 +01:00 |
|
Geoffrey White
|
a98fac0d7d
|
C++: Change note.
|
2024-07-23 17:27:42 +01:00 |
|
Geoffrey White
|
6026f65f8b
|
C++: Fix FPs in cpp/incorrectly-checked-scanf.
|
2024-07-23 17:27:37 +01:00 |
|
Chuan-kai Lin
|
67dac96e80
|
Merge pull request #17041 from github/post-release-prep/codeql-cli-2.18.1
Post-release preparation for codeql-cli-2.18.1
|
2024-07-23 06:48:30 -07:00 |
|
Geoffrey White
|
e467cc033e
|
Merge pull request #17037 from geoffw0/sizecheck
C++: Fix issue with cpp/suspicious-allocation-size
|
2024-07-23 14:47:17 +01:00 |
|
Geoffrey White
|
c1bd892a13
|
Update cpp/ql/src/Security/CWE/CWE-311/CleartextStorage.inc.qhelp
Co-authored-by: Mathias Vorreiter Pedersen <mathiasvp@github.com>
|
2024-07-23 13:14:07 +01:00 |
|
github-actions[bot]
|
49cc8f8ff8
|
Post-release preparation for codeql-cli-2.18.1
|
2024-07-22 22:00:48 +00:00 |
|
github-actions[bot]
|
368bcb684a
|
Release preparation for version 2.18.1
|
2024-07-22 21:30:50 +00:00 |
|
Chuan-kai Lin
|
23320b6e5e
|
Revert "Release preparation for version 2.18.1"
|
2024-07-22 13:22:49 -07:00 |
|
Geoffrey White
|
437c679266
|
C++: Switch to using the Buffer.qll implementation directly.
|
2024-07-22 18:09:08 +01:00 |
|
Geoffrey White
|
e8718f9d2f
|
C++: Change note.
|
2024-07-22 18:01:47 +01:00 |
|
Geoffrey White
|
7b03f3268f
|
C++: Fix false positives.
|
2024-07-22 18:00:15 +01:00 |
|
Geoffrey White
|
b1608d815b
|
C++: Change note.
|
2024-07-22 16:34:41 +01:00 |
|
Geoffrey White
|
b4fa23d731
|
C++: Address false positive results in template instantiations.
|
2024-07-22 16:34:39 +01:00 |
|
github-actions[bot]
|
55935fc123
|
Release preparation for version 2.18.1
|
2024-07-22 14:56:15 +00:00 |
|
Geoffrey White
|
b00e312569
|
C++: Replace placeholder key in the example for cpp/cleartext-storage-database.
|
2024-07-22 11:17:34 +01:00 |
|
Geoffrey White
|
f931dab14a
|
C++: Improve the cpp/cleartext-* query examples by using libsodium rather than pseudocode.
|
2024-07-22 11:17:33 +01:00 |
|
Geoffrey White
|
ffc61ae1bb
|
C++: Make memset_s a clearer recommendation in the .qhelp for cpp/memset-may-be-deleted.
|
2024-07-22 09:51:22 +01:00 |
|
Mathias Vorreiter Pedersen
|
5f70c44270
|
C++: Add change note.
|
2024-07-17 11:44:38 +01:00 |
|
Mathias Vorreiter Pedersen
|
9dd43d8e6f
|
C++: Promote 'cpp/unsigned-difference-expression-compared-zero' to Code Scanning.
|
2024-07-17 11:44:37 +01:00 |
|
Mathias Vorreiter Pedersen
|
4e916dedb1
|
C++: Add change note.
|
2024-07-16 13:17:31 +01:00 |
|
Mathias Vorreiter Pedersen
|
3d88f08264
|
C++: Include more expressions in the base case.
|
2024-07-16 13:04:45 +01:00 |
|
Mathias Vorreiter Pedersen
|
d539ce0a01
|
C++: Use GVN for base case.
|
2024-07-16 13:02:43 +01:00 |
|
Mathias Vorreiter Pedersen
|
575fbd2578
|
C++: Prepatory simplification.
|
2024-07-16 13:02:41 +01:00 |
|
Mathias Vorreiter Pedersen
|
5da3fb5e05
|
Merge pull request #16959 from MathiasVP/promote-iterator-to-expired-container-to-code-scanning
C++: Promote `cp/iterator-to-expired-container` to Code Scanning
|
2024-07-15 11:55:32 +01:00 |
|
am0o0
|
a10b5021b4
|
fix tests, it is not fixed 100%
|
2024-07-15 10:13:57 +02:00 |
|
Mathias Vorreiter Pedersen
|
64513fb6c2
|
C++: Add change note.
|
2024-07-11 14:26:47 +01:00 |
|
Mathias Vorreiter Pedersen
|
8012f3b2f7
|
C++: Increase the precision of 'cpp/iterator-to-expired-container' to high.
|
2024-07-11 14:26:05 +01:00 |
|
Geoffrey White
|
0344381120
|
Merge remote-tracking branch 'upstream/main' into docsforautofix
|
2024-07-10 11:17:52 +01:00 |
|
Geoffrey White
|
74384625f6
|
C++: Autoformat.
|
2024-07-10 11:17:44 +01:00 |
|
Mathias Vorreiter Pedersen
|
9cfd06c761
|
C++: Increase the precision of 'cpp/unsafe-strncat' to high.
|
2024-07-08 16:06:58 +01:00 |
|
Mathias Vorreiter Pedersen
|
962c73da16
|
C++: Promote 'cpp/unsafe-strncat' to Code Scanning.
|
2024-07-08 16:02:29 +01:00 |
|
Geoffrey White
|
8818f63ca7
|
C++: Add some practical details to the examples.
|
2024-07-08 14:32:05 +01:00 |
|
Geoffrey White
|
80af5b7725
|
C++: Add a third example for cpp/world-writable-file-creation.
|
2024-07-08 14:32:04 +01:00 |
|
Geoffrey White
|
4f0d725acd
|
C++: Add a 'good' example as well.
|
2024-07-08 14:32:03 +01:00 |
|
Geoffrey White
|
d52210d565
|
C++: Improve the example for cpp/return-stack-allocated-memory.
|
2024-07-08 14:32:01 +01:00 |
|
Geoffrey White
|
3c70583aa2
|
C++: Add close calls to examples for cpp/toctou-race-condition.
|
2024-07-08 14:32:00 +01:00 |
|
Geoffrey White
|
0288499801
|
C++: Rephrase the alert message for cpp/wrong-type-format-argument to be less prescriptive.
|
2024-07-08 14:31:59 +01:00 |
|
github-actions[bot]
|
ae3aba061b
|
Post-release preparation for codeql-cli-2.18.0
|
2024-07-08 13:30:13 +00:00 |
|
github-actions[bot]
|
b0d6778652
|
Release preparation for version 2.18.0
|
2024-07-08 09:10:51 +00:00 |
|
Geoffrey White
|
1343e4c9aa
|
C++: Add another 'good' example for cpp/unsigned-difference-expression-compared-zero.
|
2024-07-04 17:11:10 +01:00 |
|
Geoffrey White
|
7abece46c7
|
C++: Add a 'good' example for cpp/unsigned-difference-expression-compared-zero.
|
2024-07-04 17:11:09 +01:00 |
|
Geoffrey White
|
f64743e91d
|
C++: Fix mistake in example for cpp/incorrect-allocation-error-handling.
|
2024-07-04 16:19:32 +01:00 |
|
Arthur Baars
|
b12b33c8f9
|
Merge remote-tracking branch 'upstream/main' into 'rc/3.14'
|
2024-06-28 19:50:35 +02:00 |
|
am0o0
|
361ad6be6a
|
use abstract class for decompression flow steps
|
2024-06-26 12:45:31 +02:00 |
|
am0o0
|
656dc4e276
|
use abstract class for decompression sinks
|
2024-06-25 18:09:27 +02:00 |
|
am0o0
|
13f697c056
|
relocate the query
|
2024-06-25 17:31:40 +02:00 |
|
Mathias Vorreiter Pedersen
|
921afb71e2
|
Update cpp/ql/src/Security/CWE/CWE-570/IncorrectAllocationErrorHandling.ql
Co-authored-by: Jeroen Ketema <93738568+jketema@users.noreply.github.com>
|
2024-06-25 10:03:53 +01:00 |
|
Mathias Vorreiter Pedersen
|
bb8b0d0bf5
|
C++: Use the unary version of 'comparesEq' to handle both disjuncts.
|
2024-06-25 09:30:53 +01:00 |
|