kettenis [Tue, 28 Sep 2021 08:51:17 +0000 (08:51 +0000)]
Use -Wl,-z,wxneeded instead of -z wxneeded such that this builds with base
gcc.
ok patrick@, millert@, jca@
fcambus [Tue, 28 Sep 2021 08:35:06 +0000 (08:35 +0000)]
Link libclang_rt.profile to the build.
"go for it" kettenis@
anton [Tue, 28 Sep 2021 05:40:38 +0000 (05:40 +0000)]
add missing sudo
anton [Tue, 28 Sep 2021 05:39:24 +0000 (05:39 +0000)]
Remove recent changes used to unblock the signal undergoing testing, I solved it
by changing my regress environment instead. This reduces the delta to the NetBSD
upstream.
millert [Mon, 27 Sep 2021 19:33:58 +0000 (19:33 +0000)]
Mark "failures" volatile to avoid a problem with sigsetjmp/siglongjmp.
This makes the test pass on sparc64 where the compiler may otherwise
store the variable in the strlcpy/strlcat function's delay slot.
OK kettenis@
nicm [Mon, 27 Sep 2021 19:12:00 +0000 (19:12 +0000)]
Do not call recalculate_sizes while clearing a client session because it
needs to loop over the clients, instead do it after all clients are
cleared. Fixes a crash reported by martijn@ when a session with multiple
clients attached is destroyed, but there are other sessions so tmux does
not entirely exit. ok deraadt
bluhm [Mon, 27 Sep 2021 18:47:46 +0000 (18:47 +0000)]
These tests pass in a few seconds. Remove REGRESS_SLOW_TARGETS.
bluhm [Mon, 27 Sep 2021 18:27:14 +0000 (18:27 +0000)]
Bring this regress into nicer shape. Add all recent architectures.
For me it is still unclear what should actually be tested. It runs
MAKEDEV, stores the result into an outfile and checks nothing.
bluhm [Mon, 27 Sep 2021 18:10:24 +0000 (18:10 +0000)]
Return 0 from main() otherwise the exit code is garbage on sparc64.
Collect status of the child process to detect test failures.
OK tb@
mbuhl [Mon, 27 Sep 2021 14:07:44 +0000 (14:07 +0000)]
Make t_gettimeofday pass on sparc64.
OK bluhm@
jsg [Mon, 27 Sep 2021 05:05:57 +0000 (05:05 +0000)]
drm/amdgpu: Disable PCIE_DPM on Intel RKL Platform
From Koba Ko
45bd9dd1bee8aedc4cbd409b1ba7f9b4f941eea6 in linux 5.10.y/5.10.69
b3dc549986eb7b38eba4a144e979dc93f386751f in mainline linux
jsg [Mon, 27 Sep 2021 04:47:02 +0000 (04:47 +0000)]
drm/amd/amdgpu: Increase HWIP_MAX_INSTANCE to 10
From Ernst Sjoestrand
8f95553f0016c3994d9c022b5af4a1a433d6714e in linux 5.10.y/5.10.68
67a44e659888569a133a8f858c8230e9d7aad1d5 in mainline linux
jsg [Mon, 27 Sep 2021 04:16:18 +0000 (04:16 +0000)]
drm/amd/display: Update bounding box states (v2)
From Jerry (Fangzhi) Zuo
b80a99e048275d566d63f2463a2f640065ccbf75 in linux 5.10.y/5.10.67
a7a9d11e12fcc32160d55e8612e72e5ab51b15dc in mainline linux
jsg [Mon, 27 Sep 2021 04:14:09 +0000 (04:14 +0000)]
drm/amd/display: Update number of DCN3 clock states
From Aurabindo Pillai
583c4f3d09c3e980a683b59febbb0c775bdff1db in linux 5.10.y/5.10.67
0bbf06d888734041e813b916d7821acd4f72005a in mainline linux
jsg [Mon, 27 Sep 2021 04:11:34 +0000 (04:11 +0000)]
drm/amdgpu: Fix BUG_ON assert
From Andrey Grodzovsky
7b1abace16a9dff6804d4eb94750beb60d9502b4 in linux 5.10.y/5.10.67
ea7acd7c5967542353430947f3faf699e70602e5 in mainline linux
jsg [Mon, 27 Sep 2021 04:09:05 +0000 (04:09 +0000)]
drm/dp_mst: Fix return code on sideband message failure
From Rajkumar Subbiah
bb693c114e8b53e3e0b8228be218d907d35959a5 in linux 5.10.y/5.10.67
92bd92c44d0d9be5dcbcda315b4be4b909ed9740 in mainline linux
jsg [Mon, 27 Sep 2021 04:06:35 +0000 (04:06 +0000)]
drm/amdkfd: Account for SH/SE count when setting up cu masks.
From Sean Keely
0e9f4492219f8f991163691aad43897da8478c4e in linux 5.10.y/5.10.67
1ec06c2dee679e9f089e78ed20cb74ee90155f61 in mainline linux
jsg [Mon, 27 Sep 2021 04:04:35 +0000 (04:04 +0000)]
drm/display: fix possible null-pointer dereference in dcn10_set_clock()
From Tuo Li
83449db3aac0895147eac723bf23d0739720b968 in linux 5.10.y/5.10.67
554594567b1fa3da74f88ec7b2dc83d000c58e98 in mainline linux
jsg [Mon, 27 Sep 2021 04:02:04 +0000 (04:02 +0000)]
gpu: drm: amd: amdgpu: amdgpu_i2c: fix possible uninitialized-variable access in amdgpu_i2c_router_select_ddc_port()
From Tuo Li
2254383788ff93a423e20068333b9f8376d56cb4 in linux 5.10.y/5.10.67
a211260c34cfadc6068fece8c9e99e0fe1e2a2b6 in mainline linux
jsg [Mon, 27 Sep 2021 03:59:34 +0000 (03:59 +0000)]
drm/amd/display: fix incorrect CM/TF programming sequence in dwb
From Roy Chan
63ebc1f1df813ebb40d19449c356480555008166 in linux 5.10.y/5.10.67
781e1e23131cce56fb557e6ec2260480a6bd08cc in mainline linux
jsg [Mon, 27 Sep 2021 03:57:30 +0000 (03:57 +0000)]
drm/amd/display: fix missing writeback disablement if plane is removed
From Roy Chan
d763afc4ea2b251217ec87cf4c1e006c9f0aef99 in linux 5.10.y/5.10.67
82367e7f22d085092728f45fd5fbb15e3fb997c0 in mainline linux
jsg [Mon, 27 Sep 2021 03:54:37 +0000 (03:54 +0000)]
drm/amd/amdgpu: Update debugfs link_settings output link_rate field in hex
From Anson Jacob
6f51f4241253974a6a147daecd5c20beb7450330 in linux 5.10.y/5.10.67
1a394b3c3de2577f200cb623c52a5c2b82805cec in mainline linux
jsg [Mon, 27 Sep 2021 03:52:13 +0000 (03:52 +0000)]
drm/amdgpu: Fix a printing message
From Oak Zeng
a5999d18a8d8c4c767c60d67fe6a6fe51b9a203d in linux 5.10.y/5.10.67
95f71f12aa45d65b7f2ccab95569795edffd379a in mainline linux
jsg [Mon, 27 Sep 2021 03:47:24 +0000 (03:47 +0000)]
drm/amd/display: Fix timer_per_pixel unit error
From Oliver Logush
f462a39eb8334b52e332cc0cbffb705660b7d87b in linux 5.10.y/5.10.67
23e55639b87fb16a9f0f66032ecb57060df6c46c in mainline linux
jsg [Mon, 27 Sep 2021 03:44:40 +0000 (03:44 +0000)]
drm: protect drm_master pointers in drm_lease.c
From Desmond Cheong Zhi Xi
34609faad0c9f9f08d4b59d25c94b78bf5710d93 in linux 5.10.y/5.10.67
56f0729a510f92151682ff6c89f69724d5595d6e in mainline linux
jsg [Mon, 27 Sep 2021 03:34:34 +0000 (03:34 +0000)]
drm: serialize drm_file.master with a new spinlock
From Desmond Cheong Zhi Xi
06a553a99bacb00d3bc25f79e75c8e0fbf7a5025 in linux 5.10.y/5.10.67
0b0860a3cf5eccf183760b1177a1dcdb821b0b66 in mainline linux
jsg [Mon, 27 Sep 2021 03:23:16 +0000 (03:23 +0000)]
drm: avoid blocking in drm_clients_info's rcu section
From Desmond Cheong Zhi Xi
54e51d288b38377e8cd645a83e1ad08cc9d20ccc in linux 5.10.y/5.10.67
5eff9585de220cdd131237f5665db5e6c6bdf590 in mainline linux
jsg [Mon, 27 Sep 2021 03:20:21 +0000 (03:20 +0000)]
drm/amdgpu: Fix amdgpu_ras_eeprom_init()
From Luben Tuikov
10a135969fd7419695c003ddb67ef8a7820a808b in linux 5.10.y/5.10.67
dce4400e6516d18313d23de45b5be8a18980b00e in mainline linux
djm [Sun, 26 Sep 2021 14:01:11 +0000 (14:01 +0000)]
openssh-8.8
djm [Sun, 26 Sep 2021 14:01:03 +0000 (14:01 +0000)]
need initgroups() before setresgid(); reported by anton@, ok deraadt@
krw [Sun, 26 Sep 2021 13:13:16 +0000 (13:13 +0000)]
Revert '-b' change. Forgot required bsd.rd tweak.
krw [Sun, 26 Sep 2021 12:39:25 +0000 (12:39 +0000)]
'-g' no longer needs '-i'.
No functional change.
krw [Sun, 26 Sep 2021 12:24:53 +0000 (12:24 +0000)]
MBR partitions created with '-b' should be marked DOSACTIVE.
That's what 'bootable' means in the MBR world. GPT
partitions created by '-b' are unaffected.
Pointed out by kettenis@, obviating need for new option.
aoyama [Sat, 25 Sep 2021 23:53:35 +0000 (23:53 +0000)]
Fix a possible race condition in spc_msgin().
This comes from NetBSD:sys/dev/ic/mb89352.c fix by tsutsui:
http://cvsweb.netbsd.org/bsdweb.cgi/src/sys/dev/ic/mb89352.c.diff?r1=1.57&r2=1.58&f=h
Tested on LUNA-88K2 by me.
aoyama [Sat, 25 Sep 2021 21:34:21 +0000 (21:34 +0000)]
Add $OpenBSD$ keyword and correct spelling.
kn [Sat, 25 Sep 2021 18:40:07 +0000 (18:40 +0000)]
Add gpiocharger(4) for arm64
This driver provides support for battery chargers connected to GPIO pins,
such as those found on the Pinebook Pro.
OK kettenis
kn [Sat, 25 Sep 2021 10:43:23 +0000 (10:43 +0000)]
Add gpioleds(4) for arm64
This driver provides support for LEDs connected to GPIO pins,
such as those found on the Pinebook Pro.
OK kettenis
kn [Sat, 25 Sep 2021 09:40:33 +0000 (09:40 +0000)]
RSA/SHA-1 is not used by default anymore
OK dtucker deraadt djm
tb [Fri, 24 Sep 2021 20:48:23 +0000 (20:48 +0000)]
Simplify runAesCmacTest() by using EVP_DigestSign().
stsp [Fri, 24 Sep 2021 19:02:16 +0000 (19:02 +0000)]
Reset the Tx timer when iwm(4) firmware sends a BA notification.
This prevents a bogus "device timeout" if firmware sends a IWM_BA_NOTIF
instead of IWM_TX_CMD in order to let us know that a frame has been sent
on a Tx aggregation queue. Such behaviour was observed on iwx(4), and there
is reason to believe that iwm(4) might also be affected by this issue.
Tested by Jean-Michel Bessot on 7265 via bugs@ where this change seems
to prevent random device timeouts.
Tested by myself on 8265 with no apparent behaviour change seen.
millert [Fri, 24 Sep 2021 15:02:07 +0000 (15:02 +0000)]
Jordan now starts DST on February's last Thursday (was March).
aoyama [Fri, 24 Sep 2021 14:37:56 +0000 (14:37 +0000)]
Fix two bugs in m88k fcmp{,u} emulation.
- Use of goto will skip zeroing of 88110-specific comparison bits (bitn
12-17) in some cases. (Move their zeroing closer to the point of
their computation.)
- Computing of the "in interval" bits should not be performed when the
S2 operand is negative.
Spotted by Tetsuya Isaki (nono project), suggested diff and description
from Miod Vallat. Tested on the real hardware by Isaki and me.
kevlo [Fri, 24 Sep 2021 08:50:57 +0000 (08:50 +0000)]
regen
kevlo [Fri, 24 Sep 2021 05:25:37 +0000 (05:25 +0000)]
Add support for SIMCom SIM7600.
To issue AT commands (AT+CUSBPIDSWITCH=9003,1,1 and AT+CLANMODE=1) to
change to MBIM mode.
ok deraadt@
millert [Thu, 23 Sep 2021 21:37:34 +0000 (21:37 +0000)]
Samoa no longer observes DST.
tobias [Thu, 23 Sep 2021 18:46:25 +0000 (18:46 +0000)]
Remove wpath from secure mode pledge.
Upstream removed history file support for secure mode. The history file
feature is off by default already, disallowing it altogether in secure
mode allows us to drop wpath.
Added a note about it to manual page.
ok benno, deraadt
stsp [Thu, 23 Sep 2021 16:27:58 +0000 (16:27 +0000)]
Reset the Tx timer when iwx(4) firmware sends a BA notification.
When multiple frames are sent in a batch on a Tx aggregation queue our
current firmware version does not provide the IWX_TX_CMD notification.
Older versions used to provide this (as observed on iwm(4) devices),
but our current firmware only sends IWX_BA_NOTIF.
This means we need to reset the Tx timer upon BA_NOTIF in order to
avoid a bogus "device timeout" trigger from our watchdog handler.
Do this as soon as the BA notification has been validated.
jsing [Thu, 23 Sep 2021 15:49:48 +0000 (15:49 +0000)]
Avoid a potential overread in x509_constraints_parse_mailbox()
The length checks need to be >= rather than > in order to ensure the string
remains NUL terminated. While here consistently check wi before using it
so we have the same idiom throughout this function.
Issue reported by GoldBinocle on GitHub.
ok deraadt@ tb@
stsp [Thu, 23 Sep 2021 15:40:41 +0000 (15:40 +0000)]
Revert ieee80211_proto.c r1.97 (cvs commit ID 8vKZsdvvkjTr5BG5).
My assumption that frames which are buffered on the power save
queue were already encrypted was wrong. And the issue which this
change intended to fix is still present (reported by Mikolaj Kucharski).
stsp [Thu, 23 Sep 2021 15:34:00 +0000 (15:34 +0000)]
Add support for Tx aggregation to the iwx(4) driver.
Throughput goes up to 100 Mbit/s under ideal conditions.
This is mostly working and stable, however rare occasional hangs may occur
where the device stops giving us interrupts for reasons which are not yet
understood.
In such cases ifconfig down/up will recover the interface. Regardless, this
code seems to be stable enough for remaining issues to be resolved in-tree.
My working assumption is that the remaining issues were always present but
only trigger under increased load when firmware is driven with Tx agg enabled.
Feedback is welcome, especially if stability issues turn out to be worse than
expected! As usual, please enable "ifconfig iwx0 debug" when reporting issues.
Tests on ax200/ax201:
myself, dv, hrvoje, Stefan Hagen, kevlo, Eric Auge, mlarkin, jmc, Mark Patruck
Of which only me and jmc have reported seeing a small amount of hangs during
continuous usage over about 2 weeks.
stsp [Thu, 23 Sep 2021 15:13:47 +0000 (15:13 +0000)]
Add an ADDBA_OFFLOAD capability for wifi devices manage Tx block ack
sessions entirely in firmware. This will be used by iwx(4).
tb [Thu, 23 Sep 2021 13:28:50 +0000 (13:28 +0000)]
Remove an unused variable and a pointless label.
ok inoguchi
tb [Thu, 23 Sep 2021 13:26:51 +0000 (13:26 +0000)]
Plug leaks of buf flagged by LLVM scan-build.
ok claudio
deraadt [Wed, 22 Sep 2021 20:43:16 +0000 (20:43 +0000)]
if the key is a secret to be cleared with explicit_bzero, then the
length of that key is also a secret, may as well clear it also
deraadt [Wed, 22 Sep 2021 20:40:06 +0000 (20:40 +0000)]
use mmap() instead of alloca(), so that argv memory overflow leading to
execve can be detected better
reported by Alejandro Colomar, ok millert
benno [Wed, 22 Sep 2021 18:24:04 +0000 (18:24 +0000)]
enable POOL_DEBUG again.
deraadt [Wed, 22 Sep 2021 18:21:35 +0000 (18:21 +0000)]
we are now working on 7.0-current
claudio [Wed, 22 Sep 2021 18:17:49 +0000 (18:17 +0000)]
Adjust handling of RIB_GENERIC_ADDPATH MRT messages. Parse it the way
OpenBGPD and GoBGP dump so that it works with all the MRT implementations
out there supporting this.
While there do some additional minor cleanup.
OK deraadt@
eric [Wed, 22 Sep 2021 17:19:58 +0000 (17:19 +0000)]
remove test traces committed by mistake
eric [Wed, 22 Sep 2021 17:12:34 +0000 (17:12 +0000)]
bump version to 7.0.0
eric [Wed, 22 Sep 2021 17:11:35 +0000 (17:11 +0000)]
decode srs-encoded address in the right place.
fixes a bug where ruleset was not evaluated with the expanded address.
reported by Stefan Haller
ok millert@
eric [Wed, 22 Sep 2021 17:09:07 +0000 (17:09 +0000)]
sync table_db capabilities with table_static
ok millert@
kettenis [Wed, 22 Sep 2021 16:03:14 +0000 (16:03 +0000)]
Add a workaround for machines where the framebuffer size reported by the
hardware is incorrect. In this case, make sure the amount of "stolen"
memory is at least as large as the EFI framebuffer such that the
driver doesn't use this memory until we've switched to the framebuffer
allocated by the amdgpu(4) driver.
Needs further investigation why the size reported by the hardware is
incorrect.
Tested by djm@
ok jsg@, deraadt@
anton [Wed, 22 Sep 2021 15:44:12 +0000 (15:44 +0000)]
Prevent ucc keyboards from changing the wsmux keyboard layout.
ok deraadt@
nicm [Wed, 22 Sep 2021 15:21:44 +0000 (15:21 +0000)]
Fix command prompt with multiple prompts (add the result onto the list
again as we go along). ok deraadt
bluhm [Tue, 21 Sep 2021 21:33:35 +0000 (21:33 +0000)]
Add NUL termination to btfile content to avoid that strlcpy(3) reads
too much in btrace(8).
OK mpi@ deraadt@
deraadt [Tue, 21 Sep 2021 21:19:20 +0000 (21:19 +0000)]
ctfstrip uses objcopy behind the scenes, meaning objcopy must also
be in base set, for KARL
spotted by pavel korovin
bluhm [Tue, 21 Sep 2021 18:36:09 +0000 (18:36 +0000)]
The cflags -DSUN_CYLCHECK -DSUN_AAT0 were removed accidently. Put
them back in special like in the main disklabel Makefile.
OK deraadt@
florian [Tue, 21 Sep 2021 17:23:24 +0000 (17:23 +0000)]
Use upercase DHCP and sprinkle in some ":".
Committing on behalf of jmc
OK deraadt
kettenis [Tue, 21 Sep 2021 14:59:13 +0000 (14:59 +0000)]
During resume, also restore pins that we configured as GPIO interrupt pins.
Fixes issues with dead touchpads after resume on some machines.
ok jcs@, deraadt@
benno [Tue, 21 Sep 2021 12:41:05 +0000 (12:41 +0000)]
bump rpki-client version
claudio [Tue, 21 Sep 2021 11:59:47 +0000 (11:59 +0000)]
Move us to OpenBGPD 7.2
deraadt [Mon, 20 Sep 2021 20:23:44 +0000 (20:23 +0000)]
jmc was a bit too eager and deleted the -DSUN_CYLCHECK -DSUN_AAT0
compile options required for sparc64 (partition alignment, in particular)
noticed by bluhm during testing
anton [Mon, 20 Sep 2021 17:32:39 +0000 (17:32 +0000)]
Changing the encoding of a ucc keyboard doesn't make sense as only one
encoding is supported. Instead, silently ignore such requests. Gets rid
of the following warning emitted by kbd(8) while booting with a ucc
keyboard attached and /etc/kbdtype being present:
kbd: unsupported encoding uk on /dev/wskbd2
I ended up repurposing KB_MACHDEP as is became unused back in 2008. Note
that running a kernel with this commit applied requires kbd and
wsconsctl to be recompiled in order to show correct encodings.
Problem reported by landry@ and ok deraadt@
florian [Mon, 20 Sep 2021 17:08:43 +0000 (17:08 +0000)]
Document how a 0 byte can be encoded for client-id.
Requested by & OK sthen
mdoc clue by schwarze
tb [Mon, 20 Sep 2021 16:43:38 +0000 (16:43 +0000)]
Fix release day and emacs version
ok deraadt
claudio [Mon, 20 Sep 2021 16:39:40 +0000 (16:39 +0000)]
Use proper sigsuspend() instead of old pause() and use sigprocmask() to
block delivery of signals outside of sigsuspend(). With this the test
is more reliable. pause() is implemented as two syscalls and so it is
possible to catch a signal on the first syscall and than be stuck on
the second waiting for something that already happened.
OK millert@ deraadt@ bluhm@
florian [Mon, 20 Sep 2021 11:46:22 +0000 (11:46 +0000)]
According to RFC 2132 (9.14. Client identifier) a hardware type of 0
should be used when the client identifier is not a hardware address,
for example if it's just a string. It turns out that the majority of
dhcp clients (and possibly servers?) does not do this but rather
transmits the client identifier verbatim if a string is
configured. The first character becomes the hardware type.
Make dhcpleased(8) behave the same.
Difference in behavior with dhclient(8) and interoperability issues
with dhcp(8) first pointed out by Olivier Cherrier on misc@
OK sthen
fine to get it in for 7.0 deraadt
inoguchi [Mon, 20 Sep 2021 10:45:01 +0000 (10:45 +0000)]
Fix appstest.sh for testing with OpenSSL 3.0
- Fix 'Server Temp Key' check to work with both words "P-384" and "secp384r1".
- Test TLSv1 and TLSv1.1 only if OpenSSL version is 1.x.
djm [Mon, 20 Sep 2021 06:53:56 +0000 (06:53 +0000)]
fix missing -s in SYNOPSYS and usage() as well as a capitalisation
mistake; spotted by jmc@
dtucker [Mon, 20 Sep 2021 04:02:13 +0000 (04:02 +0000)]
Fix "Allocated port" debug message for unix sockets. From peder.stray at
gmail.com via github PR#272, ok deraadt@
djm [Mon, 20 Sep 2021 01:55:42 +0000 (01:55 +0000)]
Switch scp back to use the old protocol by default, ahead of release.
We'll wait a little longer for people to pick up sftp-server(8) that
supports the extension that scp needs for ~user paths to continue
working in SFTP protocol mode. Discussed with deraadt@
jmatthew [Mon, 20 Sep 2021 01:27:23 +0000 (01:27 +0000)]
wire up bpf correctly
ok dlg@ deraadt@
jmatthew [Mon, 20 Sep 2021 01:18:00 +0000 (01:18 +0000)]
pci_mapreg_map() will assign an address to the BAR if it doesn't have one
already, so we shouldn't refuse to attach in that case.
noticed by kevlo@ on arm64
ok dlg@ deraadt@
benno [Sun, 19 Sep 2021 20:58:28 +0000 (20:58 +0000)]
bump example versions
Whatever deraadt@
benno [Sun, 19 Sep 2021 20:56:41 +0000 (20:56 +0000)]
disable pool debug for release
ok deraadt@
deraadt [Sun, 19 Sep 2021 18:56:08 +0000 (18:56 +0000)]
adjust date
cwen [Sun, 19 Sep 2021 18:49:09 +0000 (18:49 +0000)]
login.conf: raise datasize-cur limits for pbuild on macppc to 1536MB
Required at least by www/webkitgtk4.
"commit right away" deraadt@
deraadt [Sun, 19 Sep 2021 16:55:01 +0000 (16:55 +0000)]
adjust date
mpi [Sun, 19 Sep 2021 10:43:26 +0000 (10:43 +0000)]
Unlock top part of the VM fault handler.
This is possible now that pmap_extract() is serialized with pmap_remove().
ok sthen@, deraadt@
bluhm [Sun, 19 Sep 2021 10:17:36 +0000 (10:17 +0000)]
The LocalDomain in syslogd(8) is not used, remove variable.
Use RFC 5424 NILVALUE as fallback for LocalHostName.
OK millert@ mvs@
tb [Sun, 19 Sep 2021 09:15:22 +0000 (09:15 +0000)]
Switch two calls from memset() to explicit_bzero()
This matches the documented behavior more obviously and ensures that
these aren't optimized away, although this is unlikely.
Discussed with deraadt and otto
claudio [Sun, 19 Sep 2021 08:20:04 +0000 (08:20 +0000)]
At least t_fork and t_vfork tests need coredumps enabled to succeed.
Add ulimit -c unlimited before running the tests like it is done in
other places in regress.
OK bluhm@
claudio [Sat, 18 Sep 2021 19:44:46 +0000 (19:44 +0000)]
check_send_expect() does some nasty ibuf magic to allow fn_match()
to work with a buffer that is not a real string.
The wpos is decremented in the wrong spot and would affect both
binary and non binary checks.
Simplify this code by using strndup.
OK rob@ benno@
kettenis [Sat, 18 Sep 2021 19:21:16 +0000 (19:21 +0000)]
Work around a BIOS bug on Lenovo Thinkpads based on Intel's Tiger Lake
platforms where the GPIO pin that is used for the touchpad interrupt
gets reset when entering S3 and isn't properly restored upon resume.
ok deraadt@, jcs@
deraadt [Sat, 18 Sep 2021 16:45:52 +0000 (16:45 +0000)]
upon length check or other failure, explicit_bzero an object, because it may
contain a partially copied password
ok tobhe
deraadt [Sat, 18 Sep 2021 16:45:07 +0000 (16:45 +0000)]
freezero() instead of free(), because the object may contain a password
ok tobhe
djm [Sat, 18 Sep 2021 02:03:25 +0000 (02:03 +0000)]
better error message for ~user failures when the sftp-server
lacks the expand-path extension; ok deraadt@
sthen [Fri, 17 Sep 2021 20:02:24 +0000 (20:02 +0000)]
Fix subjectAlternativeName (SAN) generation for CSRs. CA/B Forum baseline
requirements require that it's used in certificates so it makes sense to
generate a CSR compliant with this, additionally it replaces rather than
adds to the name in the certificate's subject which we weren't handling
correctly. Diff from wolf at wolfsden/cz, ok florian@
deraadt [Fri, 17 Sep 2021 15:20:21 +0000 (15:20 +0000)]
these files do not need sys/param.h