diff options
author | Matthew Garrett <mjg@redhat.com> | 2012-04-30 16:11:30 -0400 |
---|---|---|
committer | Ben Hutchings <ben@decadent.org.uk> | 2012-05-11 13:14:48 +0100 |
commit | bb1e005ee88b73be502eb42ca6bdb4c7295b7b3c (patch) | |
tree | e4e8e06fada7c4ac3926329542e4ba28f1fc39d8 /scripts/docproc.c | |
parent | 3a91135a4b1720f83810399e596937598b38b158 (diff) |
efi: Validate UEFI boot variables
commit fec6c20b570bcf541e581fc97f2e0cbdb9725b98 upstream.
A common flaw in UEFI systems is a refusal to POST triggered by a malformed
boot variable. Once in this state, machines may only be restored by
reflashing their firmware with an external hardware device. While this is
obviously a firmware bug, the serious nature of the outcome suggests that
operating systems should filter their variable writes in order to prevent
a malicious user from rendering the machine unusable.
Signed-off-by: Matthew Garrett <mjg@redhat.com>
Signed-off-by: Linus Torvalds <torvalds@linux-foundation.org>
Signed-off-by: Ben Hutchings <ben@decadent.org.uk>
Diffstat (limited to 'scripts/docproc.c')
0 files changed, 0 insertions, 0 deletions