* Stefan Tauner stefan.tauner@student.tuwien.ac.at [120826 21:31]:
As you probably all know the procedure to relieve the coreboot- supported thinkpads from their proprietary firmware is not completely trivial[1]. The main problem is that the vendor has locked down the available SPI opcodes that we are allowed to use and this hinders current flashrom to identify the flash chip.
Have you guys considered SMI cache poisoning attacks to work around those restrictions?
It would pretty much be a per bios version or per machine based workaround, but if we can provide known good coreboot images, that might be attractive for people out there...
Stefan