• Martin Holst Swende's avatar
    cmd/clef, signer: security fixes (#17554) · d3441ebb
    Martin Holst Swende authored
    * signer: remove local path disclosure from extapi
    
    * signer: show more data in cli ui
    
    * rpc: make http server forward UA and Origin via Context
    
    * signer, clef/core: ui changes + display UA and Origin
    
    * signer: cliui - indicate less trust in remote headers, see https://github.com/ethereum/go-ethereum/issues/17637
    
    * signer: prevent possibility swap KV-entries in aes_gcm storage, fixes #17635
    
    * signer: remove ecrecover from external API
    
    * signer,clef: default reject instead of warn + valideate new passwords. fixes #17632 and #17631
    
    * signer: check calldata length even if no ABI signature is present
    
    * signer: fix failing testcase
    
    * clef: remove account import from external api
    
    * signer: allow space in passwords, improve error messsage
    
    * signer/storage: fix typos
    d3441ebb
Name
Last commit
Last update
..
client.go Loading commit data...
client_example_test.go Loading commit data...
client_test.go Loading commit data...
doc.go Loading commit data...
endpoints.go Loading commit data...
errors.go Loading commit data...
http.go Loading commit data...
http_test.go Loading commit data...
inproc.go Loading commit data...
ipc.go Loading commit data...
ipc_unix.go Loading commit data...
ipc_windows.go Loading commit data...
json.go Loading commit data...
json_test.go Loading commit data...
server.go Loading commit data...
server_test.go Loading commit data...
subscription.go Loading commit data...
subscription_test.go Loading commit data...
types.go Loading commit data...
types_test.go Loading commit data...
utils.go Loading commit data...
utils_test.go Loading commit data...
websocket.go Loading commit data...
websocket_test.go Loading commit data...