2025-04-15 Security HC ordinary meeting
Date
Apr 15, 2025
Disclosures
Participants
Agenda
We have no voting agenda items this week - so the meeting may be short, continuing last weeks discussions on World guard.
The discussion has continued on the list, including the naming of the fast track extension.
Multiple members have requested the extension name avoid the term ‘WorldGuard’ as this is closely associated with one vendor. It has been suggested to refer to ‘Risc-V-Worlds’ at the system isolation level, and ‘World-ID’ for the ISA extension name.
Suggestions will be welcomed on the list or in the meeting.
Presentations
Title | Presenter | File | |
---|---|---|---|
1 |
|
|
|
2 |
|
|
|
Notes & Action Items
Ben Laurie brought up a concern about ASN.1 parser in the unified discovery plan. This is a complex parser, likely to have lots of bugs and issues, and even a reduced subset doesn't solve the issue, as folks will likely use a full parser with the bugs, as it just works. Some discussion on using device tree or other existing mechanisms instead, and avoid a datastructure. Not in the security HC remit to define how this should be done at a high level. @Geoffrey Thorpe asked for a consistent set of rules or policy, that can be used to justify the objection and would be applicable across all extensions. @Ravi Sahita suggested asking the unified discovery TG if parser bugs were in their threat model, with the expectation this can lead to a discussion and security HC guidance.
Discussion to continue offline, with recommendations. @Andrew Dellow to send an email to the mailing list to start the thread.
no discussion on Worldguard -
, multiple selections available, Use left or right arrow keys to navigate selected items
RISC-V International