
6 Jun
2014
6 Jun
'14
12:50 a.m.
On Fri, May 30, 2014 at 08:59:00PM +0200, Michael van der Westhuizen wrote:
From: Michael van der Westhuizen michael@smart-africa.com
Due to the FIT_MAX_HASH_LEN constant not having been updated to support SHA256 signatures one will always see a buffer overflow in fit_image_process_hash when signing images that use this larger hash. This is exposed by vboot_test.sh.
Signed-off-by: Michael van der Westhuizen michael@smart-africa.com Acked-by: Simon Glass sjg@chromium.org
Applied to u-boot/master (with a rework to hash.h to avoid breaking various platforms when host tools start adding command.h) , thanks!
--
Tom