Geoffrey White
|
22ed20dd7c
|
Swift: Upgrade SecKeyCopyExternalRepresentation source to be considered a password / key rather than a miscellaneous credential.
|
2023-12-14 18:04:34 +00:00 |
|
Robert Marsh
|
3738e19db6
|
Swift: fix compilation failures outside CFG code
|
2023-12-14 16:39:51 +00:00 |
|
Geoffrey White
|
10b4c98e80
|
Swift: Move password sources to be reported by the new query.
|
2023-12-14 16:09:47 +00:00 |
|
Geoffrey White
|
5faa25fc6c
|
Swift: Make passwords their own sensitive data type.
|
2023-12-14 16:09:47 +00:00 |
|
Geoffrey White
|
b5a45c64ff
|
Swift: Define barriers, additional flow steps and sinks.
|
2023-12-14 16:09:47 +00:00 |
|
Geoffrey White
|
e5bf929cdb
|
Swift: Split off WeakPasswordHashingExtensions.qll as we normally do.
|
2023-12-14 16:09:46 +00:00 |
|
Geoffrey White
|
db1508d108
|
Swift: Trivial changes - query ID / metadata, imports.
|
2023-12-14 16:09:46 +00:00 |
|
Geoffrey White
|
9774c3cb4f
|
Swift: Copy WeakPasswordHashing query from csharp.
|
2023-12-14 16:09:45 +00:00 |
|
Geoffrey White
|
be7d0acfea
|
Swift: Minor fixes for the existing weak sensitive data hashing query (naming consistency, remove unused import).
|
2023-12-14 16:09:45 +00:00 |
|
Mathias Vorreiter Pedersen
|
04ca36f9b0
|
Merge pull request #15106 from geoffw0/revrevtest
Swift: Revert:Revert "Swift: CommonCrypto test cases for the BrokenCryptoAlgorithm query"
|
2023-12-14 15:56:46 +00:00 |
|
Geoffrey White
|
7e6ff7c826
|
Swift: Disable the part of the test that triggers an extraction issue.
|
2023-12-14 15:04:48 +00:00 |
|
Geoffrey White
|
3193ceb3f9
|
Merge pull request #15052 from geoffw0/pointermodels
Swift: Expand models for UnsafePointer and friends
|
2023-12-14 14:46:48 +00:00 |
|
Anders Schack-Mulligen
|
a1068ce2f9
|
Dataflow: deprecate references
|
2023-12-14 15:05:33 +01:00 |
|
Geoffrey White
|
987cdff862
|
Revert "Revert "Swift: CommonCrypto test cases for the BrokenCryptoAlgorithm query""
This reverts commit a478980e48.
|
2023-12-14 13:56:35 +00:00 |
|
Geoffrey White
|
36d0148aa1
|
Swift: Comment out lines that don't extract correctly right now.
|
2023-12-14 13:27:05 +00:00 |
|
Tom Hvitved
|
c8b4a215bc
|
Merge pull request #14573 from hvitved/flow-summary-impl-param
Move `FlowSummaryImpl.qll` to `dataflow` pack
|
2023-12-14 12:24:15 +01:00 |
|
Tom Hvitved
|
098afb935b
|
Address more review comments
|
2023-12-14 09:48:45 +01:00 |
|
Robert Marsh
|
0e5255ea88
|
Swift: switch to shared, parameterized CFG library
|
2023-12-13 20:13:11 +00:00 |
|
Jeroen Ketema
|
4d922ddb0c
|
Merge pull request #15092 from jketema/mb12
Merge back `rc/3.12` into main
|
2023-12-13 17:45:58 +01:00 |
|
Geoffrey White
|
e8f8aa266f
|
Merge remote-tracking branch 'upstream/main' into pointermodels
|
2023-12-13 16:43:15 +00:00 |
|
Mathias Vorreiter Pedersen
|
a478980e48
|
Revert "Swift: CommonCrypto test cases for the BrokenCryptoAlgorithm query"
|
2023-12-13 15:40:09 +00:00 |
|
Jeroen Ketema
|
99e65df6ce
|
Merge remote-tracking branch 'upstream/rc/3.12' into mb12
|
2023-12-13 15:43:39 +01:00 |
|
Geoffrey White
|
023d72b6fb
|
Merge remote-tracking branch 'upstream/main' into pointermodels
|
2023-12-13 14:07:17 +00:00 |
|
Geoffrey White
|
609f92c7ac
|
Merge pull request #13870 from geoffw0/commoncrypto1
Swift: CommonCrypto test cases for the BrokenCryptoAlgorithm query
|
2023-12-12 15:26:02 +00:00 |
|
Geoffrey White
|
f2e3391a33
|
Swift: Accept test regression.
|
2023-12-12 11:37:05 +00:00 |
|
Mathias Vorreiter Pedersen
|
2e4fe49d61
|
Swift: Accept test changes.
|
2023-12-11 10:41:07 +00:00 |
|
Mathias Vorreiter Pedersen
|
d8f53e5524
|
Merge pull request #14925 from geoffw0/flows
Swift: Imprecise Taint Flows
|
2023-12-11 10:06:01 +00:00 |
|
Tom Hvitved
|
2d3f96f201
|
Swift: Use FlowSummaryImpl from dataflow pack
|
2023-12-10 11:25:44 +01:00 |
|
Geoffrey White
|
0133c659d5
|
Swift: Change note.
|
2023-12-08 16:53:38 +00:00 |
|
Geoffrey White
|
c2123f2c9b
|
Swift: More detailed models for pointers.
|
2023-12-08 16:51:53 +00:00 |
|
Anders Schack-Mulligen
|
64eb4ff753
|
Merge pull request #14983 from aschackmull/dataflow/deprecate-old-api
Data Flow: Deprecate old data flow api.
|
2023-12-08 14:27:25 +01:00 |
|
Geoffrey White
|
6a48e6ed5e
|
Merge pull request #15038 from geoffw0/mmmmodels
Swift: Model Manual Memory Management closure functions and withMemoryRebound variants
|
2023-12-08 10:25:58 +00:00 |
|
Geoffrey White
|
ba6d3484f5
|
Swift: Add more tests of pointer methods.
|
2023-12-07 18:09:34 +00:00 |
|
Geoffrey White
|
801878bff2
|
Swift: I believe flow through withUnsafeMutableBytes should always be taint flow, as it changes the type of elements to bytes.
|
2023-12-07 16:42:35 +00:00 |
|
Geoffrey White
|
ea68af8b7f
|
Swift: Change note.
|
2023-12-07 16:42:34 +00:00 |
|
Geoffrey White
|
8818b3d22d
|
Swift: Model withMemoryRebound, assumingMemoryRebound, bindMemory.
|
2023-12-07 16:03:01 +00:00 |
|
Geoffrey White
|
db3dfdc9a0
|
Swift: Model Manual Memory Management closure functions.
|
2023-12-07 15:55:00 +00:00 |
|
Geoffrey White
|
1de9919193
|
Swift: Test Manual Memory Management closure functions.
|
2023-12-07 15:10:41 +00:00 |
|
Geoffrey White
|
32fdf4fc9f
|
Merge pull request #15007 from geoffw0/sensitivekeytests
Swift: Add some tests and model SecKeyCopyExternalRepresentation
|
2023-12-07 10:50:13 +00:00 |
|
Geoffrey White
|
028326abad
|
Swift: Correct US spellings.
|
2023-12-07 09:54:01 +00:00 |
|
github-actions[bot]
|
92af5f5386
|
Post-release preparation for codeql-cli-2.15.4
|
2023-12-06 22:59:22 +00:00 |
|
github-actions[bot]
|
c04457e9e7
|
Release preparation for version 2.15.4
|
2023-12-06 21:11:50 +00:00 |
|
Robert Marsh
|
1087087acb
|
Merge pull request #14570 from rdmarsh2/rdmarsh2/swift/extract-pattern-types
Swift: extract types for patterns
|
2023-12-06 14:11:53 -05:00 |
|
Geoffrey White
|
366a9f1b7e
|
Swift: Convert unsafepointer.swift test to use labelled sources.
|
2023-12-06 18:57:30 +00:00 |
|
Paolo Tranquilli
|
db0fc3775a
|
Merge pull request #15004 from github/alexdenisov/fix-swift-autobuilder-bug
Swift: fix autobuilder bug when Xcode failure breaks the whole autobuild process
|
2023-12-06 11:29:26 +01:00 |
|
Geoffrey White
|
ff8b796731
|
Merge pull request #14692 from geoffw0/webview3
Swift: Simplify AdoptsWkNavigationDelegate in WebView.qll.
|
2023-12-06 09:11:33 +00:00 |
|
Geoffrey White
|
4cec14657e
|
Merge pull request #14853 from geoffw0/logsinks
Swift: More sinks for swift/cleartext-logging
|
2023-12-06 09:00:26 +00:00 |
|
Geoffrey White
|
e60dc9a9ed
|
Swift: Use the PostUpdateNode.
|
2023-12-05 14:48:46 +00:00 |
|
Geoffrey White
|
11d582db51
|
Swift: Change note.
|
2023-12-05 13:35:44 +00:00 |
|
Geoffrey White
|
5095031110
|
Swift: Model SecKeyCopyExternalRepresentation as an explicit sensitive data source.
|
2023-12-05 13:35:44 +00:00 |
|