+
Skip to content

Conversation

jcape
Copy link
Contributor

@jcape jcape commented Sep 30, 2022

  • Update builds to require SGX SDK 2.17.101.1.
  • Leave libs and binaries at 2.17.100.3 (no updated pkgs available).
  • Allow AVRs marked as requiring SW hardening for "INTEL-SA-00657" (SDK udpate provides that hardening).

Motivation

At some point before April 18, 2023, we will need to have a production enclave which mitigates INTEL-SA-00657. This updates the upcoming 3.0 release to contain that mitigation.

@jcape
Copy link
Contributor Author

jcape commented Sep 30, 2022

Current dependencies on/for this PR:

This comment was auto-generated by Graphite.

@jcape jcape self-assigned this Oct 14, 2022
@jcape jcape requested a review from nick-mobilecoin October 21, 2022 15:02
@jcape jcape marked this pull request as ready for review October 21, 2022 15:02
@jcape jcape merged commit 76f78b1 into master Oct 21, 2022
@jcape jcape deleted the jcape/sgx-2.17.1 branch October 21, 2022 18:02
jcape pushed a commit that referenced this pull request Oct 21, 2022
…2639)

* Update to SGX 2.17.1, add INTEL-SA-00657 to known advisories list.
* Update relevant containers to v0.0.18

Conflicts:

* ci.yml and dependent-repos.yml don't exist in release/v3
* Bump other containers.
jcape pushed a commit that referenced this pull request Oct 21, 2022
…2639)

* Update to SGX 2.17.1, add INTEL-SA-00657 to known advisories list.
* Update relevant containers to v0.0.18
* Update CircleCI to also use v0.0.18

Conflicts:

* ci.yml and dependent-repos.yml don't exist in release/v3
* Bump other containers.
jcape pushed a commit that referenced this pull request Oct 21, 2022
…2639)

* Update to SGX 2.17.1, add INTEL-SA-00657 to known advisories list.
* Update relevant containers to v0.0.18
* Update CircleCI to also use v0.0.18

Conflicts:

* ci.yml and dependent-repos.yml don't exist in release/v3
* Bump other containers.
jcape pushed a commit that referenced this pull request Oct 21, 2022
…2639)

* Update to SGX 2.17.1, add INTEL-SA-00657 to known advisories list.
* Update relevant containers to v0.0.18
* Update CircleCI to also use v0.0.18

Conflicts:

* ci.yml and dependent-repos.yml don't exist in release/v3
* Bump other containers.

Fix AESM_VERSION in runtime container.
jcape pushed a commit that referenced this pull request Oct 24, 2022
…2639) (#2759)

* Update to SGX 2.17.1, add INTEL-SA-00657 to known advisories list. (#2639)

* Update to SGX 2.17.1, add INTEL-SA-00657 to known advisories list.
* Update relevant containers to v0.0.18
* Update CircleCI to also use v0.0.18

Conflicts:

* ci.yml and dependent-repos.yml don't exist in release/v3
* Bump other containers.

Fix AESM_VERSION in runtime container.

* Only 'Install Rust' on MacOS
dolanbernard pushed a commit to dolanbernard/mobilecoin that referenced this pull request Nov 2, 2022
…obilecoinfoundation#2639)

* Update to SGX 2.17.1, add INTEL-SA-00657 to known advisories list.

* Update relevant containers to v0.0.18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

Archived in project

Development

Successfully merging this pull request may close these issues.

3 participants

点击 这是indexloc提供的php浏览器服务,不要输入任何密码和下载