Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Downgrade prevention #233

Closed
nvlsianpu opened this issue Feb 13, 2018 · 4 comments
Closed

Downgrade prevention #233

nvlsianpu opened this issue Feb 13, 2018 · 4 comments

Comments

@nvlsianpu
Copy link
Collaborator

Optional feature:
Bootloader should not accept any firmware which has version lower than current one. It may be that older firmware has known vulnerability and attack wants to exploit it.

@mkiiskila
Copy link
Contributor

Users will want to backwards in versions. This is especially during testing, but also in the field.

@utzig
Copy link
Member

utzig commented Feb 13, 2018

@mkiiskila I believe this was discussed in a meeting before, and the idea was to enable OPTIONAL support for this feature. This doesn't make sense for development, but could be wanted in the field. Also kinda in the same veins, @d3zd3z suggested using 'overwrite-only' mode when no fallback to previous version should ever be necessary.

@SebastianBoe
Copy link
Contributor

FYI: HomeKit does not allow downgrading FW.

@mbolivar
Copy link

This is a duplicate of #224

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

5 participants