chipsec icon indicating copy to clipboard operation
chipsec copied to clipboard

Question about disabled TCO SMI

Open tandasat opened this issue 7 years ago • 1 comments

Hi,

In bios_smi.py, gbl_smi_en being zero immediately results in failure of validation (ie, concluded to be vulnerable) but tco_en only generates warning. Is not disabled TCO SMI indicative of the same vulnerability as disabled global SMI?

I wondered this, because I assumed that TCO SMI is what SMM needs to reset the bit, and so, disabled TCO SMI itself is vulnerable enough.

tandasat avatar May 08 '19 15:05 tandasat

Thanks for the report. We will take a look at the module.

ErikBjorge avatar May 13 '19 21:05 ErikBjorge