Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
moosingin3space
on Oct 28, 2019
|
parent
|
context
|
favorite
| on:
The Sad Saga of Purism and the Librem 5
You can use an IOMMU to isolate DMA to a separate security domain. This is how Qubes OS works.
mondoshawan
on Oct 28, 2019
[–]
No iommu on the imx8mq.
moosingin3space
on Oct 28, 2019
|
parent
[–]
That's unfortunate, since an IOMMU is an excellent solution to this kind of problem, especially when one considers all the potential Linux USB stack vulnerabilities that can be exploited if you assume the modem is untrustworthy.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: