<feed xmlns='http://www.w3.org/2005/Atom'>
<title>Tianocore/edk2.git/SecurityPkg, branch dependabot/github_actions/actions/github-script-9</title>
<subtitle>EDK II (mirror)</subtitle>
<id>https://git.radix-linux.su/Tianocore/edk2.git/atom?h=dependabot%2Fgithub_actions%2Factions%2Fgithub-script-9</id>
<link rel='self' href='https://git.radix-linux.su/Tianocore/edk2.git/atom?h=dependabot%2Fgithub_actions%2Factions%2Fgithub-script-9'/>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/'/>
<updated>2026-05-08T02:15:34+00:00</updated>
<entry>
<title>MdePkg,SecurityPkg: Fix Spelling Errors in TCG/TPM Definitions</title>
<updated>2026-05-08T02:15:34+00:00</updated>
<author>
<name>Oliver Smith-Denny</name>
<email>osde@microsoft.com</email>
</author>
<published>2026-04-13T16:53:38+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=81b7c2912bd6dd8a409303340928317ff406e51d'/>
<id>urn:sha1:81b7c2912bd6dd8a409303340928317ff406e51d</id>
<content type='text'>
Fix spelling errors in definitions in
TcgPhysicalPresence.h, TcgStorageOpal.h, Tpm12.h,
and Tpm2Acpi.h. Update consumer in SecurityPkg.

Temporary backward-compatible aliases are provided
for the old misspelled macro and enum names.

Continuous-integration-options: PatchCheck.ignore-multi-package

Signed-off-by: Oliver Smith-Denny &lt;osde@microsoft.com&gt;
</content>
</entry>
<entry>
<title>SecurityPkg/SecureBootVariableLib: Cleanup debug print readability</title>
<updated>2026-05-06T10:43:05+00:00</updated>
<author>
<name>Benjamin Doron</name>
<email>benjamin.doron@9elements.com</email>
</author>
<published>2025-07-30T16:36:00+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=441873c2a98721df51196e657fecc7319002eb65'/>
<id>urn:sha1:441873c2a98721df51196e657fecc7319002eb65</id>
<content type='text'>
All debug prints should end in a newline character.

Signed-off-by: Benjamin Doron &lt;benjamin.doron@9elements.com&gt;
</content>
</entry>
<entry>
<title>SecurityPkg: Remove duplicate file name in INF file</title>
<updated>2026-04-29T09:18:10+00:00</updated>
<author>
<name>Qihang Gao</name>
<email>gaoqihang@loongson.cn</email>
</author>
<published>2026-04-23T02:02:12+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=25540b069f9f78ced4d0611db2bf8fe556453f01'/>
<id>urn:sha1:25540b069f9f78ced4d0611db2bf8fe556453f01</id>
<content type='text'>
In SpdmSecuredMessageLib, libspdm_secmes_encode_decode.c appears twice
in [Sources] section, so remove the duplicate one.

Signed-off-by: Qihang Gao &lt;gaoqihang@loongson.cn&gt;
</content>
</entry>
<entry>
<title>SecurityPkg: Tcg2AcpiFfa: Polish revision checks for TPM2 table</title>
<updated>2026-04-07T04:23:57+00:00</updated>
<author>
<name>Kun Qin</name>
<email>kuqin@microsoft.com</email>
</author>
<published>2026-02-03T23:03:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=f1fc41cff2a2022e67da3f9f525f9087cf2de507'/>
<id>urn:sha1:f1fc41cff2a2022e67da3f9f525f9087cf2de507</id>
<content type='text'>
Given the start method of FFA is only introduced in revision 5 of the TCG
ACPI specification. A TPM2 table with FFA start method and lower than 5
revision should not be allowed.

This change updates the checks for revision PCD and removed a few
conditions based on new revision 5 assumptions.

Signed-off-by: Kun Qin &lt;kun.qin@microsoft.com&gt;
</content>
</entry>
<entry>
<title>SecurityPkg: Tcg2AcpiFfa: Fix endianness of partition ID</title>
<updated>2026-04-07T04:23:57+00:00</updated>
<author>
<name>Kun Qin</name>
<email>kuqin@microsoft.com</email>
</author>
<published>2026-02-03T22:27:10+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=a270773cce476ed0be9eb9b6370164d1d1fb0796'/>
<id>urn:sha1:a270773cce476ed0be9eb9b6370164d1d1fb0796</id>
<content type='text'>
Current Tcg2AcpiFfa will populate the partition ID in byte order of big-
endian. This conflicts with the TCG ACPI Specification, which specifies
the byte-order to be little-endian.

This change corrects the byte order population process by replacing the
platform parameter byte array with MdePkg defined structure.

Signed-off-by: Kun Qin &lt;kun.qin@microsoft.com&gt;
</content>
</entry>
<entry>
<title>SecurityPkg: Tcg2AcpiFfa: Remove Tcg2PhysicalPresenceLib from dependencies</title>
<updated>2026-04-07T04:23:57+00:00</updated>
<author>
<name>Kun Qin</name>
<email>kuqin@microsoft.com</email>
</author>
<published>2026-02-03T22:28:45+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=c60df38f10716f60eab4c617623e5c124b8cc2f7'/>
<id>urn:sha1:c60df38f10716f60eab4c617623e5c124b8cc2f7</id>
<content type='text'>
Current implementation of Tcg2AcpiFfa does not rely on the interfaces
defined in `Tcg2PhysicalPresenceLib`. Carrying it in the module inf could
bring in unnecessary external dependencies and cause loading orders to
change.

This change removes the dependency from the current "LibraryClasses"
list.

Signed-off-by: Kun Qin &lt;kun.qin@microsoft.com&gt;
</content>
</entry>
<entry>
<title>SecurityPkg: Refactor performance to use new PERF_FUNCTION_* measurements</title>
<updated>2026-03-17T02:38:07+00:00</updated>
<author>
<name>Sherry Fan</name>
<email>sherryfan@microsoft.com</email>
</author>
<published>2026-01-17T02:24:51+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=11af818b3ea8f4a46570b41a08af0b114b372896'/>
<id>urn:sha1:11af818b3ea8f4a46570b41a08af0b114b372896</id>
<content type='text'>
Use the new PERF_FUNCTION_START/END instrumentation for simpler perf
measurement.

Signed-off-by: Sherry Fan &lt;sherryfan@microsoft.com&gt;
</content>
</entry>
<entry>
<title>SecurityPkg/Tcg2Smm: harden NVS/SMI state initialization</title>
<updated>2026-03-13T02:33:10+00:00</updated>
<author>
<name>20000419</name>
<email>lzy20000419@outlook.com</email>
</author>
<published>2026-03-08T12:20:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=6fb6ef54e7599b2b20d0bc24937403b76144a0f0'/>
<id>urn:sha1:6fb6ef54e7599b2b20d0bc24937403b76144a0f0</id>
<content type='text'>
Signed-off-by: 20000419 &lt;lzy20000419@outlook.com&gt;
</content>
</entry>
<entry>
<title>SecurityPkg: AuthVariableLib: Handle empty signature lists</title>
<updated>2026-03-10T06:33:40+00:00</updated>
<author>
<name>Kun Qin</name>
<email>kuqin@microsoft.com</email>
</author>
<published>2026-03-03T00:16:06+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=b980aa07196a5534581b16563cd78cfc67a74074'/>
<id>urn:sha1:b980aa07196a5534581b16563cd78cfc67a74074</id>
<content type='text'>
The current implementation fails to set authenticated variables when the
signature list is empty. This can legitimately occur for dbx when no
signatures are revoked after a certificate rotation.

Update the logic to explicitly handle empty signature lists, avoiding an
implicit dependency on the variable being absent from variable storage.

Signed-off-by: Kun Qin &lt;kun.qin@microsoft.com&gt;
</content>
</entry>
<entry>
<title>SecurityPkg: align UNI file headers with UNI Spec standard</title>
<updated>2026-03-02T19:32:17+00:00</updated>
<author>
<name>Alexander Gryanko</name>
<email>xpahos@gmail.com</email>
</author>
<published>2026-02-11T10:28:27+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=201a4fe3ec5024b715f2b5478522a113af066532'/>
<id>urn:sha1:201a4fe3ec5024b715f2b5478522a113af066532</id>
<content type='text'>
The Uni file standard specifies that comments begin with the
characters "//". The following files contained incorrectly
formatted C-style comments and have been updated:

SecurityPkg/Library/DxeTcg2PhysicalPresenceLib/PhysicalPresenceStrings.uni
SecurityPkg/Library/DxeTcgPhysicalPresenceLib/PhysicalPresenceStrings.uni
SecurityPkg/Tcg/Tcg2Config/Tcg2ConfigStrings.uni
SecurityPkg/Tcg/TcgConfigDxe/TcgConfigStrings.uni
SecurityPkg/VariableAuthenticated/SecureBootConfigDxe/SecureBootConfigStrings.uni

The problems were identified during testing of the parser
https://github.com/xpahos/edk2-idea.

Signed-off-by: Alexander Gryanko &lt;xpahos@gmail.com&gt;
</content>
</entry>
</feed>
