On Wed, Oct 08, 2025 at 05:06:04PM +0530, Anshul Dalal wrote:

> The expected payload for the SPL in secure falcon mode is a fitImage
> that contains the kernel image and the DT. This removes the need to load
> an additional args file, which exposes an additional attack vector since
> it can not be verified.
> 
> Therefore this patch disables loading of the arg file when
> SPL_OS_BOOT_SECURE is set.
> 
> Signed-off-by: Anshul Dalal <[email protected]>

Reviewed-by: Tom Rini <[email protected]>

-- 
Tom

Attachment: signature.asc
Description: PGP signature

Reply via email to