ihsinme
|
bbd3f7631e
|
Delete test.c
sorry i was in a hurry
|
2021-01-11 23:52:26 +03:00 |
|
ihsinme
|
b92d63d5df
|
Delete CompilerRemovalOfCodeToClearBuffers.qlref
sorry i was in a hurry
|
2021-01-11 23:51:37 +03:00 |
|
ihsinme
|
05f866e912
|
Delete CompilerRemovalOfCodeToClearBuffers.expected
sorry i was in a hurry
|
2021-01-11 23:51:18 +03:00 |
|
ihsinme
|
d7a5e61f8e
|
Delete CompilerRemovalOfCodeToClearBuffers.qhelp
sorry i was in a hurry
|
2021-01-11 23:50:47 +03:00 |
|
ihsinme
|
c38cfcb735
|
Delete CompilerRemovalOfCodeToClearBuffers.ql
sorry i was in a hurry
|
2021-01-11 23:50:19 +03:00 |
|
ihsinme
|
65ff526eef
|
Delete CompilerRemovalOfCodeToClearBuffers.c
sorry i was in a hurry
|
2021-01-11 23:49:53 +03:00 |
|
ihsinme
|
ed6d8e3d18
|
Add files via upload
|
2021-01-11 23:40:38 +03:00 |
|
ihsinme
|
b185a33157
|
Add files via upload
|
2021-01-11 23:39:02 +03:00 |
|
ihsinme
|
b28444b55c
|
Update MemoryLeakOnFailedCallToRealloc.ql
I thought since there is no work on this PR, I will delete the residual import.
|
2021-01-11 21:17:49 +03:00 |
|
ihsinme
|
2d6dafc6be
|
Update MemoryLeakOnFailedCallToRealloc.ql
|
2021-01-07 15:44:50 +03:00 |
|
ihsinme
|
f378c14659
|
Update MemoryLeakOnFailedCallToRealloc.expected
|
2021-01-07 15:43:58 +03:00 |
|
ihsinme
|
592cd284e8
|
Update test.c
|
2021-01-07 15:41:31 +03:00 |
|
ihsinme
|
abdeaabd77
|
Update MemoryLeakOnFailedCallToRealloc.ql
|
2021-01-06 22:46:03 +03:00 |
|
ihsinme
|
2b8227e04d
|
Update cpp/ql/src/experimental/Security/CWE/CWE-401/MemoryLeakOnFailedCallToRealloc.ql
Co-authored-by: Geoffrey White <40627776+geoffw0@users.noreply.github.com>
|
2021-01-06 22:23:46 +03:00 |
|
ihsinme
|
f7eb328f76
|
Update cpp/ql/src/experimental/Security/CWE/CWE-401/MemoryLeakOnFailedCallToRealloc.qhelp
Co-authored-by: Geoffrey White <40627776+geoffw0@users.noreply.github.com>
|
2021-01-06 22:18:14 +03:00 |
|
ihsinme
|
d7f31ca1a0
|
Update cpp/ql/src/experimental/Security/CWE/CWE-401/MemoryLeakOnFailedCallToRealloc.qhelp
Co-authored-by: Geoffrey White <40627776+geoffw0@users.noreply.github.com>
|
2021-01-06 22:17:26 +03:00 |
|
ihsinme
|
0c7381a3b0
|
Add files via upload
|
2020-12-26 20:45:11 +03:00 |
|
ihsinme
|
cd7c47ea39
|
Add files via upload
|
2020-12-26 20:43:25 +03:00 |
|
CodeQL CI
|
2bb96369f1
|
Merge pull request #4868 from erik-krogh/boundShell
Approved by esbena
|
2020-12-22 03:35:42 -08:00 |
|
CodeQL CI
|
7c6b4d7324
|
Merge pull request #4865 from esbena/js/fix-execa-model
Approved by erik-krogh
|
2020-12-22 03:32:26 -08:00 |
|
Erik Krogh Kristensen
|
da9a4e5267
|
add test
|
2020-12-22 11:22:25 +01:00 |
|
Erik Krogh Kristensen
|
b8b5aef5f4
|
recognize Object.defineProperty(obj, prop, {get: func}) as a property-write
|
2020-12-22 11:21:41 +01:00 |
|
Erik Krogh Kristensen
|
6a9089b15e
|
recognize bound functions in js/shell-command-constructed-from-input
|
2020-12-22 11:20:34 +01:00 |
|
CodeQL CI
|
67d0f4d938
|
Merge pull request #4866 from esbena/js/add-tests-for-examples
Approved by erik-krogh
|
2020-12-22 02:04:47 -08:00 |
|
CodeQL CI
|
e2bba97794
|
Merge pull request #4860 from erik-krogh/functionExports
Approved by esbena
|
2020-12-22 01:05:37 -08:00 |
|
CodeQL CI
|
b35edc9de6
|
Merge pull request #4732 from github/esbena-patch-4
Approved by erik-krogh
|
2020-12-22 00:42:25 -08:00 |
|
Esben Sparre Andreasen
|
34a09ff522
|
JS: add js/conditional-bypass example as a test case
|
2020-12-22 09:34:25 +01:00 |
|
Esben Sparre Andreasen
|
009527c69c
|
JS: add change note
|
2020-12-22 09:26:35 +01:00 |
|
Esben Sparre Andreasen
|
ab4f3ea259
|
JS: fixup for execa.shell and execa.shellSync models
|
2020-12-22 09:06:18 +01:00 |
|
Esben Sparre Andreasen
|
ba714a1214
|
JS: add execa.shell tests
|
2020-12-22 09:01:43 +01:00 |
|
Jonas Jensen
|
430194bb66
|
Merge pull request #4863 from MathiasVP/is-source-on-default-taint-tracking
C++: Overridable isSource on DefaultTaintTracking
|
2020-12-22 08:32:07 +01:00 |
|
Mathias Vorreiter Pedersen
|
4f07474b62
|
C++: Also allow custom sources in taintedWithoutGlobals
|
2020-12-21 19:55:47 +01:00 |
|
Mathias Vorreiter Pedersen
|
f4f96fe257
|
C++: Use isSource in queries. These were the only queries that restrict the source after dataflow terminates.
|
2020-12-21 16:35:35 +01:00 |
|
Mathias Vorreiter Pedersen
|
0e84c638b6
|
C++: Add isSource to AdjustedConfiguration
|
2020-12-21 16:34:22 +01:00 |
|
Tom Hvitved
|
0c78fb2933
|
Merge pull request #4855 from madneal/fix-for-csharp-docs
Fix for csharp docs
|
2020-12-21 14:11:36 +01:00 |
|
Erik Krogh Kristensen
|
4ef569fbbe
|
recognize more exported functions in js/shell-command-constructed-from-input
|
2020-12-21 13:50:22 +01:00 |
|
Shati Patel
|
0a0137bb5e
|
Merge pull request #4859 from github/shati-patel-patch-1
Fix typo in docs title
|
2020-12-21 12:07:32 +00:00 |
|
Jonas Jensen
|
4308381057
|
Merge pull request #4846 from MathiasVP/default-taint-tracking-operand-instruction-interleaving
C++: Instruction -> Operand interleaving for DefaultTaintTracking
|
2020-12-21 12:44:06 +01:00 |
|
Shati Patel
|
66b85f1e5e
|
Fix typo
|
2020-12-21 11:29:02 +00:00 |
|
Neal Caffery
|
ee0257836f
|
removed, as it fixed by #4848
|
2020-12-21 19:05:37 +08:00 |
|
Mathias Vorreiter Pedersen
|
06366fa320
|
Merge pull request #4856 from jbj/gvn-wrapper-test
C++: Test the AST wrapper for IR GVN
|
2020-12-21 09:31:10 +01:00 |
|
Tom Hvitved
|
16aee6e71e
|
Merge pull request #4842 from hvitved/csharp/format-method-no-insertion-param
C#: Recognize format methods without insertion parameters
|
2020-12-21 09:25:18 +01:00 |
|
Jonas Jensen
|
3236cbd83e
|
C++: Test the AST wrapper for IR GVN
Out of our 3 GVN libraries, the one we actually use in production didn't
have tests -- except indirectly through `diff_ir_expr.ql`.
|
2020-12-21 08:21:02 +01:00 |
|
neal1991
|
b9d24b8255
|
fix for issue #4849
|
2020-12-21 08:54:15 +08:00 |
|
neal1991
|
eac83df40b
|
fix for issue #4848
|
2020-12-21 08:52:42 +08:00 |
|
Rasmus Wriedt Larsen
|
49f902d28b
|
Merge pull request #4757 from yoff/python-dataflow-synthetic-callables
Python: Enclosing callable for synthetic arguments
|
2020-12-18 16:06:26 +01:00 |
|
yoff
|
a08eb99778
|
Merge pull request #4779 from RasmusWL/django-class-based-handlers
Python: Add modeling of django class based view handlers
|
2020-12-18 15:58:51 +01:00 |
|
Anders Schack-Mulligen
|
5106d5df53
|
Merge pull request #4833 from luchua-bc/java-broken-crypto-algorithms
Java: Add missing broken crypto algorithms
|
2020-12-18 15:12:29 +01:00 |
|
Rasmus Wriedt Larsen
|
3e6296c7b8
|
Python: Fix grammar in QLDoc
|
2020-12-18 14:54:14 +01:00 |
|
Rasmus Wriedt Larsen
|
ed11e8f916
|
Python: Simplify predicate implementation
Co-authored-by: yoff <lerchedahl@gmail.com>
|
2020-12-18 14:52:20 +01:00 |
|