public inbox for u-boot@lists.denx.de
 help / color / mirror / Atom feed
* [PATCH v3 0/2] Use RNG to get random behaviour
@ 2020-12-18  9:28 matthias.bgg at kernel.org
  2020-12-18  9:28 ` [PATCH v3 1/2] lib: uuid: use RNG device if present matthias.bgg at kernel.org
  2020-12-18  9:28 ` [PATCH v3 2/2] net: Use NDRNG device in srand_mac() matthias.bgg at kernel.org
  0 siblings, 2 replies; 8+ messages in thread
From: matthias.bgg at kernel.org @ 2020-12-18  9:28 UTC (permalink / raw)
  To: u-boot

From: Matthias Brugger <mbrugger@suse.com>

For now bootp and uuid code use a weak seed for generating random data.
U-Boot as support for RNG devices now, so we should change to code to
use them if they are present. This will help mitigate issues like seen
in CVE-2019-11690.

Changes in v3:
- use IS_ENABLED instead of #if
- use 4 byte for entropy
- use IS_ENABLED instead of #if

Changes in v2:
- fix dm_rng_read() parameters
- add missing include
- fix dm_rng_read() parameters
- add missing include file

Matthias Brugger (2):
  lib: uuid: use RNG device if present
  net: Use NDRNG device in srand_mac()

 lib/uuid.c     | 21 ++++++++++++++++++---
 net/net_rand.h | 19 ++++++++++++++++++-
 2 files changed, 36 insertions(+), 4 deletions(-)

-- 
2.29.2

^ permalink raw reply	[flat|nested] 8+ messages in thread

end of thread, other threads:[~2021-10-22 15:14 UTC | newest]

Thread overview: 8+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2020-12-18  9:28 [PATCH v3 0/2] Use RNG to get random behaviour matthias.bgg at kernel.org
2020-12-18  9:28 ` [PATCH v3 1/2] lib: uuid: use RNG device if present matthias.bgg at kernel.org
2020-12-18  9:51   ` Torsten Duwe
2021-01-19 20:01   ` Tom Rini
2021-10-22 15:14   ` Patrick DELAUNAY
2020-12-18  9:28 ` [PATCH v3 2/2] net: Use NDRNG device in srand_mac() matthias.bgg at kernel.org
2020-12-18  9:52   ` Torsten Duwe
2021-01-19 20:01   ` Tom Rini

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox