Re: Code-signing broken?
Re: Code-signing broken?
- Subject: Re: Code-signing broken?
- From: Damien Sorresso <email@hidden>
- Date: Fri, 06 Mar 2009 10:48:07 -0800
On Mar 6, 2009, at 9:53 AM, Tim Murison wrote:
The code-signature still passes. So, my question is WTF?
Scratch that... I got myself confused. If I add stuff to the end of
the
file, the signature passes. You can't modify the code segment and
keep a
valid signature though.
When signing a fat Mach file, each architecture is signed
independently. So you could use lipo to thin a fat Mach file, which is
certainly a massive change, and the remaining architectures' code
signatures would still validate.
--
Damien Sorresso
BSD Engineering
Apple Inc.
Attachment:
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Darwin-dev mailing list (email@hidden)
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden