On Thu, Apr 11, 2013 at 11:55:52AM -0300, Claudio Freire wrote:
On Thu, Apr 11, 2013 at 7:29 AM, "Stefan Brüns"
wrote: Am 11.04.13, schrieb Claudio Freire
: A nightmare for the security team though.
This firmware is run on the Cypress FX2 USB/FPGA bridge and the FPGA softcore. It is just uploaded to the USRP, and has no access to the host memory (USB can not issue DMA from the device side). I do not see any security issues here.
The security team would have to make sure the binaries in those packages are indeed restricted to that usage. And they would have to understand pretty well what that device's capabilities are to be able to judge risk levels. That's the nightmare.
How is different from kernel-firmware? Regards, Martin -- To unsubscribe, e-mail: opensuse-buildservice+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-buildservice+owner@opensuse.org