Skip to content

Conversation

@Tonux599
Copy link
Contributor

MSI releases v1.1.5 and v0.9.3 contain an older microcode than the one listed in the SBOM. Due to the following line:

https://github.com/Dasharo/coreboot/blob/fecb8be236ff4199cf8f576375e70bcc292c4821/src/soc/intel/alderlake/Makefile.mk#L79-L80

This PR updates the SBOM with the correct microcode version.

@pietrushnic pietrushnic requested a review from miczyg1 November 12, 2025 13:05
@pietrushnic
Copy link
Contributor

@Tonux599 thanks for contribution, @miczyg1 I wonder if we should/could improve internal automation to include this improved format proposed in this PR?

@Tonux599
Copy link
Contributor Author

@Tonux599 thanks for contribution, @miczyg1 I wonder if we should/could improve internal automation to include this improved format proposed in this PR?

It was actually copied from the previous releases (as the microcode is the same). However I've just pushed a commit to update the revision (git commit for dasharo-blobs), and it was linking to the FSP license not the ucode one.

@miczyg1
Copy link
Contributor

miczyg1 commented Nov 12, 2025

Couple expired links in the other files nto modified by the PR. Fixed on master branch and merging this one.

@miczyg1 miczyg1 merged commit 432fb51 into Dasharo:master Nov 12, 2025
3 of 4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants