Bug fixes ported from 2026.1
details
- Finding IDs
- F-AMD-BOOTGEN-003
- Status
- fixed publicly (functional bug, no CVE)
- Reported via
- AMD PSIRT
- Note
- AMD tracked SWSPLAT-9457 as a functional bug rather than a CVE. public commit d06a738b6e99 on 2026-06-01 updates the Versal verify path so unauthenticated images fail closed when neither the image header table nor any partition has authentication metadata, closing the bootgen -arch versal -verify false-positive behavior reported in F-AMD-BOOTGEN-003.
F-AMD-BOOTGEN-003: Verification failures. The verify path reports success without the required authentication certificate. Reviewed 24 Sep 2026. Mechanism assessed by 1seal.
Mechanism source for F-AMD-BOOTGEN-003
Security area (1seal assessment): Integrity. Boot image verification now rejects an image with no authentication certificate rather than reporting successful authentication. Reviewed 21 Sep 2026.