Re: [PATCH v5 0/1] MR5516: wintrust: Add support for the PE image hash in CryptCATAdminCalcHashFromFileHandle().
28 May
2024
28 May
'24
8:51 p.m.
On Wed Apr 24 15:30:39 2024 +0000, Hans Leidekker wrote:
The entry itself must skipped. The hash should be the same whether the image is signed or not. right, but this means that you never include in the hash what's after the content of the security directory?
(and another nitpick, not sure it does matter so much for real images, but it should be checked against nth->OptionalHeader.NumberOfRvaAndSizes that security header in present) -- https://gitlab.winehq.org/wine/wine/-/merge_requests/5516#note_68711
570
Age (days ago)
570
Last active (days ago)
0 comments
1 participants
participants (1)
-
eric pouech (@epo)