On 04/11/2017 11:31 AM, Patrick Georgi via coreboot wrote:
Hi,
I just pushed https://review.coreboot.org/19242, which adds a document discussing mitigations for the ReBAR SMM attack Intel Security presented in January. I think we had a couple of people bringing it up on IRC and on the list, but these were relatively unstructured and nothing happened from there.
I'd just use this opportunity to try out Gerrit as design discussion tool, so if you're interested in that topic, feel free to comment.
Thanks, Patrick
I was under the impression that coreboots native init boards disabled SMM post-init and that this issue only applies to intel's FSP blobbed stuff, am I incorrect?