| Legend: | |||||||
|---|---|---|---|---|---|---|---|
| Free | Proprietary | Mixed Free and Proprietary | Proprietary, but fully disableable | Proprietary, but partial info/RE work available | Unknown | Undefined | None or N/A - feature/system not present |
| Property | Description |
|---|---|
| Manufacturer | Lenovo |
| Model | ThinkPad 60/70/80-Series |
| Year | Undefined |
| Max CPU | Undefined |
| Max RAM | Undefined |
| Image | Intel Logo, credit Intel (https://logodownload.org/wp-content/uploads/2014/04/intel-logo-1-1.png) |
| Software: User-Facing Environment | Free |
| Software: Operating System | Free |
| Software: Bootloader/Recovery | Free |
| Firmware: Persistent Privileged Code (e.g. x86 SMM) | Free (Coreboot) This is an FSP platform. However, with the exception of the (optional) FSP-I on certain very
recent Xeon platforms, no FSP components run in SMM. |
| Firmware: Late Boot/Payload | Free (EDK2, etc.) |
| Firmware: Platform Initialization | Mixed, Coreboot w/ prop. FSP-S |
| Firmware: Memory Initialization | Proprietary (FSP-M) |
| Firmware: Early Boot (incl. RoT) | Free (Coreboot) |
| Firmware: Boot ROM | None x86 CPUs don't have true "software" boot ROMs in mask ROM (such as those in many ARM SoCs).
Most x86 platforms map the firmware in SPI flash directly into address space at the reset vector, where it can be executed in-place. Prior to this, some early
initialization may be performed by the ROM microcode, or by coprocessors (such as the ME/PSP) if present. |
| Firmware Signing | ME only, can be defeated ME11 is vulnerable to
CVE-2017-5705, which allows arbitrary code execution
on the ME, defeating its firmware signing. This can be used to defeat Boot Guard using Deguard. |
| CPU Microcode | Proprietary All current x86 CPUs use proprietary microcode, stored in mask ROM in the CPU itself.
Additional updates to this microcode can be temporarily loaded by firmware and/or the OS. |
| Management Coprocessor: Firmware | Proprietary, partially disabled (ME Gen3) On ME version 11 specifically (Skylake, Kaby Lake, and some Coffee Lake), sometimes called "ME Generation 3", less of the ME firmware can be removed or
disabled while still leaving the system operational than on earlier versions. Approximately 300 kB of the original 2 - 7 MB binary, consisting of four regions
(rbe, kernel, syslib, and bup) are required. The AltMeDisable ("HAP") bit can also be used on these MEs. |
| Communications Coprocessor: Internal Firmware | WLAN proprietary, but card is removable |
| Communications Coprocessor: Host-Loaded Firmware | Unnecessary with some cards (e.g. ath9k) |
| Security Coprocessor: Firmware | Proprietary, but use of it is optional (TPM) |
| Embedded Controller: Firmware | Proprietary |
| Hardware: Board Electrical Schematic | Proprietary, but often available online |
| Hardware: Board PCB Design | Proprietary, but boardview often available |
| Hardware: CPU Instruction Set | Proprietary (x86_64) |
| Hardware: CPU/SoC Implementation | Proprietary (Intel Kaby Lake) |
| Hardware: CPU/SoC Synthesis Toolchain | Proprietary |