]> git.proxmox.com Git - mirror_edk2.git/commit - OvmfPkg/Bhyve/BhyveX64.dsc
OvmfPkg: strip build paths in release builds
authorRoss Burton <ross@burtonini.com>
Wed, 24 Mar 2021 11:58:19 +0000 (11:58 +0000)
committermergify[bot] <37929162+mergify[bot]@users.noreply.github.com>
Wed, 24 Mar 2021 22:07:32 +0000 (22:07 +0000)
commitf037af6ecbc3b55042c998a59ed8df8548e64b99
treec4e5707da1b5d964124af85fe9d053ed132ae0f1
parent0ecdcb6142037dd1cdd08660a2349960bcf0270a
OvmfPkg: strip build paths in release builds

GenFw will embed a NB10 section which contains the path to the input file,
which means the output files have build paths embedded in them.  To reduce
information leakage and ensure reproducible builds, pass --zero in release
builds to remove this information.

Ref: https://bugzilla.tianocore.org/show_bug.cgi?id=3256
Signed-off-by: Ross Burton <ross.burton@arm.com>
Message-Id: <20210324115819.605436-1-ross.burton@arm.com>
Reviewed-by: Laszlo Ersek <lersek@redhat.com>
OvmfPkg/AmdSev/AmdSevX64.dsc
OvmfPkg/Bhyve/BhyveX64.dsc
OvmfPkg/OvmfPkgIa32.dsc
OvmfPkg/OvmfPkgIa32X64.dsc
OvmfPkg/OvmfPkgX64.dsc
OvmfPkg/OvmfXen.dsc