On Mon, Feb 15, 2021 at 05:08:12PM -0700, Simon Glass wrote:

> Using unit addresses in a FIT is a security risk. Add a check for this
> and disallow it.
> 
> CVE-2021-27138
> 
> Signed-off-by: Simon Glass <s...@chromium.org>
> Reported-by: Bruce Monroe <bruce.mon...@intel.com>
> Reported-by: Arie Haenel <arie.hae...@intel.com>
> Reported-by: Julien Lenoir <julien.len...@intel.com>

Applied to u-boot/master, thanks!

-- 
Tom

Attachment: signature.asc
Description: PGP signature

Reply via email to