From mboxrd@z Thu Jan 1 00:00:00 1970 From: Marius Bakke Subject: Re: Meltdown / Spectre Date: Mon, 08 Jan 2018 19:26:49 +0100 Message-ID: <87fu7g436e.fsf@fastmail.com> References: <874lnzcedp.fsf@gmail.com> <20180106174358.GA28436@jasmine.lan> <87lghapeu5.fsf@gmail.com> <87incc6z9o.fsf@gmail.com> Mime-Version: 1.0 Content-Type: multipart/signed; boundary="=-=-="; micalg=pgp-sha512; protocol="application/pgp-signature" Return-path: Received: from eggs.gnu.org ([2001:4830:134:3::10]:33297) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eYc8Y-0002to-0h for guix-devel@gnu.org; Mon, 08 Jan 2018 13:27:06 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eYc8S-00031m-Pg for guix-devel@gnu.org; Mon, 08 Jan 2018 13:27:06 -0500 Received: from out3-smtp.messagingengine.com ([66.111.4.27]:58553) by eggs.gnu.org with esmtps (TLS1.0:DHE_RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eYc8S-0002zz-Ih for guix-devel@gnu.org; Mon, 08 Jan 2018 13:27:00 -0500 In-Reply-To: <87incc6z9o.fsf@gmail.com> List-Id: "Development of GNU Guix and the GNU System distribution." List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org Sender: "Guix-devel" To: Katherine Cox-Buday , Chris Marusich Cc: development@libreboot.org, guix-devel@gnu.org --=-=-= Content-Type: text/plain Katherine Cox-Buday writes: > Chris Marusich writes: > >> Leo Famulari writes: > >> I wonder: how easy will it be to install those firmware/microcode >> updates if you are using GuixSD? In particular, I'm curious about the >> case of the Lenovo x200 with libreboot, since that's what I use >> personally. > > I am also interested -- more from a philisophical perspective -- how > GuixSD and GNU squares with these kinds of security updates. In my opinion, CPU microcode falls under "non-functional data", as expressly permitted by the GNU FSDG. It is not required for the processor to function, it is merely *a posteriori* data that the CPU can use to fix erratic behaviour. Just my 2 NOK, Marius --=-=-= Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEu7At3yzq9qgNHeZDoqBt8qM6VPoFAlpTt+kACgkQoqBt8qM6 VPrafQf/f4SYAqriwp6azRDaRHIbA7JmP67ud8AXO3v8GpSxZhEZSnbjiOedgIfS WdDYG3oIX3kAfVmw5tAXr3LeqtMVo+iam03/Wz1VZgqxRm+iBporflam/ASSz0+B ztZRHMoEqsGaKmdypO+IsCuPAJifQHHc+7BTERRT7sT4WM4stLpx4uQRDg94byXM FvK/SZFtKkNPOR8Ns6Kuzxune3jdfmsz6DJy+NkQEHexOYYJFh8rwsEEqivbgtay LnrYmk6PhsRfDI9Dc1Qs9ZzFNjcmMzF/i5UbayEac53jcUxSqpkgXdVGc92LWQZt uQ8v+j33ABAmgZjLD7fK3s+NEfMuaQ== =tqGf -----END PGP SIGNATURE----- --=-=-=--