Skip to content

Scrub OP-TEE TA stack#845

Merged
sangho2 merged 2 commits into
mainfrom
sanghle/optee/scrub_stack
May 20, 2026
Merged

Scrub OP-TEE TA stack#845
sangho2 merged 2 commits into
mainfrom
sanghle/optee/scrub_stack

Conversation

@sangho2
Copy link
Copy Markdown
Contributor

@sangho2 sangho2 commented May 14, 2026

This PR scrubs the OP-TEE TA stack at the initialization. This prevents potential information leakage because the TA stack is recycled across different sessions of the same single-instance TA.

@sangho2 sangho2 marked this pull request as ready for review May 14, 2026 04:02
@sangho2 sangho2 force-pushed the sanghle/optee/scrub_stack branch from 3d4741e to 830e5a2 Compare May 15, 2026 04:28
@sangho2 sangho2 marked this pull request as draft May 15, 2026 14:19
@sangho2 sangho2 marked this pull request as ready for review May 15, 2026 14:29
Comment thread litebox_shim_optee/src/loader/ta_stack.rs
Copy link
Copy Markdown
Member

@wdcui wdcui left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM. Thanks.

@sangho2 sangho2 force-pushed the sanghle/optee/scrub_stack branch from 830e5a2 to 74dae4f Compare May 19, 2026 23:51
@github-actions
Copy link
Copy Markdown

🤖 SemverChecks 🤖 No breaking API changes detected

Note: this does not mean API is unchanged, or even that there are no breaking changes; simply, none of the detections triggered.

@sangho2 sangho2 added this pull request to the merge queue May 20, 2026
Merged via the queue into main with commit 4975d13 May 20, 2026
13 checks passed
@sangho2 sangho2 deleted the sanghle/optee/scrub_stack branch May 20, 2026 01:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants