Received: by 2002:a25:868d:0:0:0:0:0 with SMTP id z13csp811903ybk; Wed, 13 May 2020 13:50:26 -0700 (PDT) X-Google-Smtp-Source: ABdhPJzaryvFFvA+yXKyRMlig7POYtGcAWID7DUf0Dhri5Zom4wey4zuRmlZaDcNar4eltzDDgDq X-Received: by 2002:a05:6402:1296:: with SMTP id w22mr1288848edv.364.1589403026456; Wed, 13 May 2020 13:50:26 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1589403026; cv=none; d=google.com; s=arc-20160816; b=NbLt7h5MOSB7Q9Ni784TSUoyNSoYaHtlQUnkX0BwlZssykmKF7yp5WsaYS4FGc46z3 3M5mSWW0XDBISCq+WiPJmAR7tglV7XvlPkCTMh6fYrByBZL6Zw9enkimK0Z+TTwPNirX zBukjlA/zg2MiiZoKwstSqd/40K87Lzd5W9szSdJt5mCEE6ceWO0cftOIa2cXe3fMq3z +0pPuGAkezpL1Dt4BDDdmBORIpyXzuozAP7YLL+ony1DKs37eVjZG52ku9hGJkEr6uLJ 4L27PSp/lnpxRbtV4bft5sC+fweLMc+1gQV3BAMnr3s5AIviykcx7iXCUCp+Yl5ro1+J 33jw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding:mime-version :references:in-reply-to:date:cc:to:from:subject:message-id :dkim-signature; bh=yxxIAtQXBw1IxdefX88C/YDjGR2L3s8saT/dRu3+XgY=; b=FOz2UV61YWcL7YQLfpwO+9G2nplzJH+MvNbRKHsyIQCnayevwqnbmS03IpEFYgksCS FTRU2ODIvmYzHpcvgF/b2TYLC34jiNmCydHZhpnrBcx8JMrbhyuJpXJx1v3Omi2VESR1 nfNbz9MISyVSw/TXe3sOwfC8mn2KjN24bpsTm3285VPl9WHSBebvaQPUJ+PL/T4fiwcj kVA2A+E5TyPQ7EXn4n+UB1ttx85Q661i0vheIwfIxNss/ixQfwlIHn/x44gz1va/GTIU +gEjmxTBglMGcKnVpZhoJi+RmwQvMSrrERzO9iM70An7lZ1WSo7hGZG/PV8PWGhQXnP4 2xrg== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=O2CCNQtP; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id c1si399930edd.366.2020.05.13.13.50.03; Wed, 13 May 2020 13:50:26 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=O2CCNQtP; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S2389552AbgEMQYE (ORCPT + 99 others); Wed, 13 May 2020 12:24:04 -0400 Received: from mail.kernel.org ([198.145.29.99]:41734 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1732380AbgEMQYD (ORCPT ); Wed, 13 May 2020 12:24:03 -0400 Received: from localhost.localdomain (pool-96-246-152-186.nycmny.fios.verizon.net [96.246.152.186]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPSA id 00E8D20659; Wed, 13 May 2020 16:24:00 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=default; t=1589387042; bh=GMIEwlaUuMOKi5AkDYUqDh+tZ9JXGeSF/BENEVLdelE=; h=Subject:From:To:Cc:Date:In-Reply-To:References:From; b=O2CCNQtPLWuis6Iyzz3t9LE9/0N1orztrF73b2GHGrbexfrSZMT8U1JojVtMomoti 4IWbO2zbjaT+y5cJm/QTf5h8Q0wwikUv/jNNnCpLz84UNFT4gDGcQZaIiYJsKfrFCx p/BF5chqdi5380TQ6UASs7NhMo537xeK2eTcgF54= Message-ID: <1589387039.5098.147.camel@kernel.org> Subject: Re: [PATCH v5 0/7] firmware: add partial read support in request_firmware_into_buf From: Mimi Zohar To: Scott Branden , Luis Chamberlain , Greg Kroah-Hartman , David Brown , Alexander Viro , Shuah Khan , bjorn.andersson@linaro.org, Shuah Khan , Arnd Bergmann Cc: "Rafael J . Wysocki" , linux-kernel@vger.kernel.org, linux-arm-msm@vger.kernel.org, linux-fsdevel@vger.kernel.org, BCM Kernel Feedback , Olof Johansson , Andrew Morton , Dan Carpenter , Colin Ian King , Kees Cook , Takashi Iwai , linux-kselftest@vger.kernel.org, Andy Gross Date: Wed, 13 May 2020 12:23:59 -0400 In-Reply-To: <20200508002739.19360-1-scott.branden@broadcom.com> References: <20200508002739.19360-1-scott.branden@broadcom.com> Content-Type: text/plain; charset="UTF-8" X-Mailer: Evolution 3.20.5 (3.20.5-1.fc24) Mime-Version: 1.0 Content-Transfer-Encoding: 8bit Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Hi Scott, On Thu, 2020-05-07 at 17:27 -0700, Scott Branden wrote: > Please consider this version series ready for upstream acceptance. > > This patch series adds partial read support in request_firmware_into_buf. > In order to accept the enhanced API it has been requested that kernel > selftests and upstreamed driver utilize the API enhancement and so > are included in this patch series. > > Also in this patch series is the addition of a new Broadcom VK driver > utilizing the new request_firmware_into_buf enhanced API. Up to now, the firmware blob was read into memory allowing IMA to verify the file signature.  With this change, ima_post_read_file() will not be able to verify the file signature. (I don't think any of the other LSMs are on this hook, but you might want to Cc the LSM or integrity mailing list.) Mimi