-
Notifications
You must be signed in to change notification settings - Fork 640
Closed
Labels
Description
There are still too many outstanding bugs in the Windows plugins for us to start the artifact comparison testing for the parity release. If we don't get these fixed and merged by end of January, then its going to be very difficult (borderline impossible) to meet the parity release deadline.
I am using this ticket as a tracker for the tickets and PRs needed to reach this goal. Once the referenced tickets are closed and PRs are merged, then I will close this ticket.
Tickets:
- Handle bug round 2 #1573 (David)
- All calls to
get_nameon registry keys need auditing #1476 (Dave) - drivermodule reports too many FPs from driverscan #1487 (Andrew)
-
MajorFunctionaccess crashes driverirp #1481 (Andrew) - Orphan kernel threads needs to check process validity before access #1474 (Andrew)
- ldrmodules needs fix after dlllist update #1475 (Andrew)
-
decode_datacrashes in svcscan #1478 (David) -
decode_datacrashes in amcache #1479 (David)
PRs:
- Windows: Allow windows.dlllist to report back DLLs from wow64 processes #1572 (Hannah)
- Do not yield DRIVER_OBJECT instances found in scanning that are not a… #1488 (Andrew)
- #1473 - add exception handling on calls to registry get_key #1568 (ikelos)
- #1473 - add exception handling on calls to registry get_key #1568 (ikelos)
- Prevent infinite looping and out of memory errors #1482 #1490 (ikelos)
Reactions are currently unavailable