fwupd/data
Richard Hughes 47efacfe5d Remove the firmware builder functionality
We used the firmware builder functionality to either build or modify
firmware images on the end-user system, e.g. copying the MAC address
from the old system image to the new system image.

Unfortunately running fwupd on the command line (e.g. ./src/fwupd)
leaves the tty connected and thus bubblewrap doesn't protect us from
installing malicious signed firmware. The firmware would have to have
been uploaded to the LVFS by a trusted vendor and signed before being
installed, which further decreases the severity of this problem.

As there was only one vendor who asked for this functionality (who have
yet to upload a single firmware to the LVFS...) just rip out this
functionality to reduce our attack surface and completely fix the bug,
and any like it.

Many thanks to Aaron Janse <aaron@ajanse.me> for discovering and
disclosing this issue to us.
2022-07-29 16:52:38 +01:00
..
bash-completion Remove the firmware builder functionality 2022-07-29 16:52:38 +01:00
device-tests trivial: Squash the Wacom Intuos device test file into one 2022-07-20 12:25:28 +01:00
fish-completion Add support for reading and writing firmware attributes 2022-07-28 17:30:57 -05:00
installed-tests trivial: Make meson.build indentation consistent 2022-06-21 03:27:38 -04:00
motd trivial: Make meson.build indentation consistent 2022-06-21 03:27:38 -04:00
pki trivial: Make meson.build indentation consistent 2022-06-21 03:27:38 -04:00
remotes.d trivial: Make meson.build indentation consistent 2022-06-21 03:27:38 -04:00
90-fwupd-devices.rules optionrom: Test if the PCI device has ROM in probe 2020-09-20 19:11:44 +01:00
cfi.quirk Support Google Servo Dock 2022-04-07 09:39:12 -05:00
daemon.conf Add support for a new TrustedUids key 2022-04-14 10:30:54 -05:00
fwupd-offline-update.service.in Dynamically read path to use for /system-update 2019-05-01 09:24:55 -05:00
fwupd.ico Switch the Windows installer from NSIS to MSI 2022-05-09 15:49:40 +01:00
fwupd.service.in systemd: don't run fwupd/fwupd-refresh in containers 2022-02-17 15:23:33 +00:00
fwupd.shutdown.in trivial: fix a shellcheck failure 2021-04-09 16:02:20 +01:00
meson.build Remove the firmware builder functionality 2022-07-29 16:52:38 +01:00
org.freedesktop.fwupd.conf Add initial build files and enough code to launch a simple D-Bus daemon 2015-02-26 18:16:40 +00:00
org.freedesktop.fwupd.metainfo.xml Release fwupd 1.8.3 2022-07-22 10:50:25 +01:00
org.freedesktop.fwupd.service.in Allows confined snaps to activate fwupd via D-Bus 2019-11-12 12:40:08 -06:00
org.freedesktop.fwupd.svg Show in Flathub correctly 2019-02-15 12:32:46 +00:00
power.quirk trivial: move upower.quirk out of upower plugin 2021-06-18 09:12:57 +01:00