[PATCH] lib: rsa: check algo match in rsa_verify_with_keynode

Tom Rini trini at konsulko.com
Tue Oct 13 16:07:05 CEST 2020


On Wed, Sep 23, 2020 at 07:11:44PM +0200, Matthieu CASTET wrote:

> The algo name should match between the FIT's signature node and the
> U-Boot's control FDT.
> 
> If we do not check it, U-Boot's control FDT can expect sha512 hash but
> nothing will prevent to accept image with sha1 hash if the signature is correct.
> 
> Signed-off-by: Matthieu CASTET <castet.matthieu at free.fr>

Applied to u-boot/master, thanks!

-- 
Tom
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 659 bytes
Desc: not available
URL: <https://lists.denx.de/pipermail/u-boot/attachments/20201013/2ede574e/attachment.sig>


More information about the U-Boot mailing list