Geoffrey White
|
cb33ed4fc2
|
C++: Only look for sensitive strings in appropriate parameters.
|
2022-03-07 11:29:09 +00:00 |
|
Mathias Vorreiter Pedersen
|
c7d624d314
|
Merge pull request #8247 from ihsinme/ihsinme-patch-80
CPP: Add query for CWE-190: Integer Overflow or Wraparound when using transform after operation
|
2022-03-07 11:00:29 +00:00 |
|
Geoffrey White
|
e7dca435a9
|
Merge pull request #6950 from ihsinme/ihsinme-patch-078
CPP: Add query for CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
|
2022-03-07 10:55:29 +00:00 |
|
Geoffrey White
|
f1d6234483
|
C++: Add more information about registry query parameters.
|
2022-03-07 09:45:31 +00:00 |
|
Geoffrey White
|
4316026720
|
C++: VariableAccess -> Expr.
|
2022-03-04 18:00:54 +00:00 |
|
Mathias Vorreiter Pedersen
|
624795cbbf
|
Merge pull request #8059 from rdmarsh2/rdmarsh2/cpp/insufficient-key-strength
C++: new query for insufficient key strength
|
2022-03-04 17:11:44 +00:00 |
|
Mathias Vorreiter Pedersen
|
9a91e66714
|
Merge pull request #8321 from MathiasVP/improve-using-expired-address-query
C++: More TPs from `cpp/using-expired-stack-address`
|
2022-03-04 12:07:55 +00:00 |
|
Robert Marsh
|
60532e631e
|
C++: fix missing paren
|
2022-03-03 14:45:43 -05:00 |
|
Mathias Vorreiter Pedersen
|
bf10456bf5
|
C++: Add a path explanation to the 'cpp/using-expired-stack-address' query.
|
2022-03-03 13:55:00 +00:00 |
|
Mathias Vorreiter Pedersen
|
9df923a7c8
|
C++: Catch more true positives by stepping into calls in the 'cpp/using-expired-stack-address' query.
|
2022-03-03 13:53:09 +00:00 |
|
Geoffrey White
|
6848b6095b
|
C++: Autoformat.
|
2022-03-03 12:51:54 +00:00 |
|
Geoffrey White
|
5c6923c099
|
C++: Improve and differentiate the qhelp.
|
2022-03-03 11:04:55 +00:00 |
|
Geoffrey White
|
07b4bf7023
|
C++: Use the same trick as in ExposedSystemData to catch a few more results.
|
2022-03-03 10:33:39 +00:00 |
|
Geoffrey White
|
6e5729c924
|
C++: Fix typo and adjust violation message wording.
|
2022-03-03 10:28:53 +00:00 |
|
Geoffrey White
|
9e193f624c
|
C++: Change note.
|
2022-03-03 09:55:02 +00:00 |
|
Robert Marsh
|
9fb94d85b4
|
C++: performance tweaks for InsufficientKeySize
|
2022-03-02 15:59:42 -05:00 |
|
Geoffrey White
|
2a14a4f14e
|
C++: Fill in metadata.
|
2022-03-02 18:52:52 +00:00 |
|
Geoffrey White
|
66b9356eb9
|
C++: There is no overlap between OutputWrite and RemoteFlowSinkFunction.
|
2022-03-02 18:16:39 +00:00 |
|
Geoffrey White
|
a1ace7122d
|
C++: Move SystemData class into a library.
|
2022-03-02 18:01:06 +00:00 |
|
Geoffrey White
|
d95b56fca0
|
C++: Create prototype query.
|
2022-03-02 17:56:49 +00:00 |
|
ihsinme
|
9e76260f1d
|
Update DangerousUseOfTransformationAfterOperation.ql
|
2022-03-02 10:38:57 +03:00 |
|
ihsinme
|
f5267ba8c6
|
Update DangerousUseOfTransformationAfterOperation.qhelp
|
2022-03-02 10:24:40 +03:00 |
|
ihsinme
|
a6654fce4a
|
Update ImproperCheckReturnValueScanf.ql
|
2022-03-01 16:37:29 +03:00 |
|
Geoffrey White
|
5402b02fd7
|
Merge branch 'main' into cwe497
|
2022-03-01 11:58:24 +00:00 |
|
Tamás Vajk
|
94cb5c2be4
|
Merge pull request #8296 from github/post-release-prep/codeql-cli-2.8.2
Post-release preparation for codeql-cli-2.8.2
|
2022-03-01 11:57:36 +01:00 |
|
ihsinme
|
be11e4fc2d
|
Apply suggestions from code review
Co-authored-by: Geoffrey White <40627776+geoffw0@users.noreply.github.com>
|
2022-03-01 12:25:57 +03:00 |
|
github-actions[bot]
|
980f822983
|
Post-release preparation for codeql-cli-2.8.2
|
2022-03-01 09:24:30 +00:00 |
|
ihsinme
|
d772ea0efe
|
Apply suggestions from code review
Co-authored-by: Jeroen Ketema <93738568+jketema@users.noreply.github.com>
|
2022-03-01 10:49:36 +03:00 |
|
ihsinme
|
c6083a6f95
|
Apply suggestions from code review
Co-authored-by: Mathias Vorreiter Pedersen <mathiasvp@github.com>
|
2022-03-01 09:37:57 +03:00 |
|
Geoffrey White
|
2b0d473072
|
C++: Remove this query from exclude-slow-queries.yml.
|
2022-02-28 12:18:11 +00:00 |
|
Mathias Vorreiter Pedersen
|
dfd30e46b0
|
Merge pull request #8227 from geoffw0/319improve
C++: Promote cpp/non-https-url
|
2022-02-25 08:48:44 +00:00 |
|
ihsinme
|
74f8145970
|
Add files via upload
|
2022-02-25 11:18:38 +03:00 |
|
ihsinme
|
bddb5fd9f9
|
Add files via upload
|
2022-02-25 11:14:20 +03:00 |
|
ihsinme
|
025701170e
|
Add files via upload
|
2022-02-25 11:07:48 +03:00 |
|
Robert Marsh
|
a60fe9f4b8
|
C++: exclude 0 earlier in InsufficientKeySize
|
2022-02-24 14:26:37 -05:00 |
|
Geoffrey White
|
899ae90ba4
|
C++: Add GVN.
|
2022-02-24 17:22:37 +00:00 |
|
Jeroen Ketema
|
b933a58215
|
C++: Replace Deprecated Queries by Deprecated Classes
This is more accurate for the only change in the list.
|
2022-02-24 16:48:23 +01:00 |
|
github-actions[bot]
|
20fe22c8c8
|
Release preparation for version 2.8.2
|
2022-02-24 14:57:08 +00:00 |
|
Geoffrey White
|
6c40cda68d
|
C++: Pragmatic solution to include more sinks (plus autoformat changes).
|
2022-02-24 12:10:34 +00:00 |
|
Geoffrey White
|
e3493e32e0
|
C++: Change note.
|
2022-02-24 10:54:09 +00:00 |
|
Geoffrey White
|
fc8ebdaeb2
|
C++: Increase the query to precision high.
|
2022-02-24 10:54:09 +00:00 |
|
Geoffrey White
|
c16302be13
|
C++: Fix the FP.
|
2022-02-24 10:54:08 +00:00 |
|
Mathias Vorreiter Pedersen
|
ef5f16ddd3
|
Merge branch 'main' into add-using-expired-stack-address-query
|
2022-02-24 08:41:27 +00:00 |
|
Mathias Vorreiter Pedersen
|
8900f6c043
|
C++: Add comment about ir re-evaluation.
|
2022-02-23 17:12:05 +00:00 |
|
Mathias Vorreiter Pedersen
|
033edc24f4
|
C++: Respond to review comments.
|
2022-02-23 16:23:49 +00:00 |
|
Mathias Vorreiter Pedersen
|
4b03778938
|
Update cpp/ql/src/Likely Bugs/Memory Management/UsingExpiredStackAddress.ql
Co-authored-by: Geoffrey White <40627776+geoffw0@users.noreply.github.com>
|
2022-02-23 13:10:29 +00:00 |
|
Mathias Vorreiter Pedersen
|
c8f940124f
|
C++: Respond to review comments.
|
2022-02-23 11:17:12 +00:00 |
|
Mathias Vorreiter Pedersen
|
8b7214621b
|
Update cpp/ql/src/Likely Bugs/Memory Management/UsingExpiredStackAddress.qhelp
Co-authored-by: Jeroen Ketema <93738568+jketema@users.noreply.github.com>
|
2022-02-23 09:38:30 +00:00 |
|
Mathias Vorreiter Pedersen
|
8e0f354c2c
|
Update cpp/ql/src/Likely Bugs/Memory Management/UsingExpiredStackAddress.cpp
Co-authored-by: Jeroen Ketema <93738568+jketema@users.noreply.github.com>
|
2022-02-23 09:38:06 +00:00 |
|
Mathias Vorreiter Pedersen
|
862ebefbad
|
Update cpp/ql/src/Likely Bugs/Memory Management/UsingExpiredStackAddress.ql
Co-authored-by: Jeroen Ketema <93738568+jketema@users.noreply.github.com>
|
2022-02-23 09:33:58 +00:00 |
|