[PATCH 5/8] efi: Get the secure boot status [ver #6]

David Howells dhowells at redhat.com
Mon Jan 23 14:11:43 PST 2017


Matt Fleming <matt at codeblueprint.co.uk> wrote:

> >  (4) extract_kernel() calls sanitize_boot_params() which would otherwise clear
> >      the secure-boot flag.
>  
> The ->sentinel flag should be clear (because you zero'd boot_params on
> alloc), so the code inside of sanitize_boot_params() should never
> trigger for the secure boot case.

But it *does* trigger, otherwise I wouldn't've noticed this.

David



More information about the linux-arm-kernel mailing list