[PATCH v1] env: Kconfig: disable external env in secure os boot

Tom Rini trini at konsulko.com
Thu Oct 9 21:06:49 CEST 2025


On Thu, Oct 09, 2025 at 06:04:34PM +0530, Anshul Dalal wrote:

> Falcon mode uses falcon_image_file from the env during mmc fs boot, but
> external env can be compromised. Therefore disable access to external
> env by setting SPL_ENV_IS_NOWHERE when SPL_OS_BOOT_SECURE is set.
> 
> Signed-off-by: Anshul Dalal <anshuld at ti.com>

Reviewed-by: Tom Rini <trini at konsulko.com>

-- 
Tom
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 228 bytes
Desc: not available
URL: <https://lists.denx.de/pipermail/u-boot/attachments/20251009/77347cb4/attachment.sig>


More information about the U-Boot mailing list