Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Verify signature before verifying sbat levels
Verifying the validity of a files signature can protect from an attacker creating a file that exploits a potential issue in the sbat validation. If the signature is not checked first, an attacker can just create a file with a valid .sbat section and can still attack the signature validation. Signed-off-by: Jan Setje-Eilers <Jan.SetjeEilers@oracle.com>
- Loading branch information