diff options
author | Alexander A. Klimov <grandmaster@al2klimov.de> | 2020-07-11 15:58:04 +0200 |
---|---|---|
committer | Greg Kroah-Hartman <gregkh@linuxfoundation.org> | 2020-07-15 16:33:51 +0200 |
commit | 10623b879da3932be313ba142d56b9f3d1216e96 (patch) | |
tree | c12bba02c9a0c1d68d3a60b4b3d80b55f6695c52 /security/lockdown | |
parent | d6c3c6c09f5abb60a9f3c2d8f56abb529c967f35 (diff) | |
download | linux-10623b879da3932be313ba142d56b9f3d1216e96.tar.bz2 |
usb: dwc3: Replace HTTP links with HTTPS ones
Rationale:
Reduces attack surface on kernel devs opening the links for MITM
as HTTPS traffic is much harder to manipulate.
Deterministic algorithm:
For each file:
If not .svg:
For each line:
If doesn't contain `\bxmlns\b`:
For each link, `\bhttp://[^# \t\r\n]*(?:\w|/)`:
If neither `\bgnu\.org/license`, nor `\bmozilla\.org/MPL\b`:
If both the HTTP and HTTPS versions
return 200 OK and serve the same content:
Replace HTTP with HTTPS.
Signed-off-by: Alexander A. Klimov <grandmaster@al2klimov.de>
Link: https://lore.kernel.org/r/20200711135804.19735-1-grandmaster@al2klimov.de
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
Diffstat (limited to 'security/lockdown')
0 files changed, 0 insertions, 0 deletions