c789522
From c1694574d6eb287e6e181dd018fe54b718a613b3 Mon Sep 17 00:00:00 2001
0bcec26
From: Matthew Garrett <mjg59@coreos.com>
0bcec26
Date: Sun, 9 Aug 2015 16:32:29 -0700
31cddd6
Subject: [PATCH] Measure the kernel commandline
0bcec26
0bcec26
Measure the kernel commandline to ensure that it hasn't been modified
0bcec26
---
0bcec26
 grub-core/lib/cmdline.c | 6 +++++-
0bcec26
 1 file changed, 5 insertions(+), 1 deletion(-)
0bcec26
0bcec26
diff --git a/grub-core/lib/cmdline.c b/grub-core/lib/cmdline.c
0bcec26
index 970ea868c14..6b56304d4a7 100644
0bcec26
--- a/grub-core/lib/cmdline.c
0bcec26
+++ b/grub-core/lib/cmdline.c
0bcec26
@@ -19,6 +19,7 @@
0bcec26
 
0bcec26
 #include <grub/lib/cmdline.h>
0bcec26
 #include <grub/misc.h>
0bcec26
+#include <grub/tpm.h>
0bcec26
 
0bcec26
 static int
0bcec26
 is_hex(char c)
0bcec26
@@ -79,7 +80,7 @@ int grub_create_loader_cmdline (int argc, char *argv[], char *buf,
0bcec26
 {
0bcec26
   int i, space;
0bcec26
   unsigned int arg_size;
0bcec26
-  char *c;
0bcec26
+  char *c, *orig = buf;
0bcec26
 
0bcec26
   for (i = 0; i < argc; i++)
0bcec26
     {
0bcec26
@@ -125,5 +126,8 @@ int grub_create_loader_cmdline (int argc, char *argv[], char *buf,
0bcec26
 
0bcec26
   *buf = 0;
0bcec26
 
0bcec26
+  grub_tpm_measure ((void *)orig, grub_strlen (orig), GRUB_CMDLINE_PCR,
0bcec26
+		    "Kernel Commandline");
0bcec26
+
0bcec26
   return i;
0bcec26
 }