top | item 21374932

(no title)

moosingin3space | 6 years ago

You can use an IOMMU to isolate DMA to a separate security domain. This is how Qubes OS works.

discuss

order

mondoshawan|6 years ago

No iommu on the imx8mq.

moosingin3space|6 years ago

That's unfortunate, since an IOMMU is an excellent solution to this kind of problem, especially when one considers all the potential Linux USB stack vulnerabilities that can be exploited if you assume the modem is untrustworthy.