Recent development (unreleased)

This document describes the major changes that are expected to be included in the next release of flashrom and which are currently only available by source code checkout (see Building from source). These changes may be further revised before the next release.

Bugs fixed

  • AMD-based PCs with FCH were unable to read flash contents for internal (BIOS flash) chips larger than 16 MB, and attempting to do so could crash the system.

    https://ticket.coreboot.org/issues/370

  • Erasing generic SFDP chips was unreliable or could crash if the SFDP erase definitions were not in ascending order of sector sizes.

    Eraseblocks definition detected from SFDP header are now sorted in ascending order before proceeding further.

    See https://review.coreboot.org/c/flashrom/+/90131

    To complete the bug fix, few more things are also added:

    • selfcheck function now runs over a chip definition that was constructed from the SFDP header. This way we assert that definition is valid before starting any further operations with the chip.

    • Basic tests are added for sfdp probing flow.

Added support

  • Intel Wildcat Lake chipset

  • EN25QX128A

  • MT25QU02G, MT25QL02G marked as tested

  • MT35XU02G

  • MX25U12873F

  • MX25R512F

  • MX25R1035F

  • MX25U12873F

  • MX66U1G45G

  • MX66L2G45G

  • P25D80H

  • S25FL116K/S25FL216K marked as tested

  • W35T02NW

  • W35T02NW

  • W25Q512JV_M

  • W25Q80_V

  • W25R256JW

  • W77Q{16,32}JW

  • W77Q{64,128}JW

  • W77Q{64,128}JV

  • W77Q{25,51,10}NW [1]

  • W77T{25,51,10}NW [1]

  • XM25QU64C/XM25LU64C write-protect support

New features

Fail immediately when trying to write/erase wp regions

One more check has been added before performing erase/write operations. It aborts writing to flash if any of the requested regions are write-protected by chip, dynamically by a chipset, or are defined as read-only.

A new message is now printed for the user to explain what happened, example:

can_change_target_regions: cannot fully update part1 region
(00000000..0x04ffff) due to chip's write-protection.
At least one target region is not fully writable. Aborting.
Error: some of the required checks to prepare flash access failed.
Earlier messages should give more details.
Erase operation has not started.

For write, the last line would be Write operation has not started.

This change is done so it's harder for user to brick his own platform. Information about read-only regions can easily be missed as flashrom can output a lot of information on screen. Even if you notice you might not know if one of the regions you requested falls inside read-only range, especially if using different names for those regions. If you are flashing multiple regions or ones that partially overlap with read-only parts then that could result in flashrom failing in the middle, leaving you in unknown state.

FMAP verification support

A new --fmap-verify option has been added that allows verification of FMAP (Flash Map) layout compatibility before performing write operations. This option reads the FMAP layout from both the flash ROM and the file to be written, then compares them to ensure they match before proceeding with the write.

This is particularly useful when updating specific regions (e.g., COREBOOT) to prevent accidentally writing a ROM image with an incompatible layout that could result in a bricked system. The --fmap-verify option is mutually exclusive with --fmap, --fmap-file, --layout, and --ifd options, and can only be used with write operations (-w).

Example usage:

flashrom -p programmer --fmap-verify -w newimage.rom --image COREBOOT

If the FMAP layouts don't match, the operation will abort with a detailed error message showing which regions differ.

Erase now respects --noverify option

The option --noverify is now respected during erase operation, and verification is not performed if the option is set.

Corresponding libflashrom flag is FLASHROM_FLAG_VERIFY_AFTER_WRITE.

Default behaviour stays the same, by default verification is performed.

Previously, erase operation ignored --noverify option and always performed verification.

For more details, see https://ticket.coreboot.org/issues/520

Note there are still some remaining cases for non-spi chips, when --noverify is ignored, more details and disussion is here: https://ticket.coreboot.org/issues/605

Programmers updates

  • New programmer: Nvidia System Management Agent

    System Management Agent (SMA) programmer is a SoC which is working as a side band management on Nvidia server board. One of its functions is to flash firmware to other components.

  • asm106x: Added device ID for IDE mode

    Some boards are configured as IDE controller (class 0x0101); others even have a physical switch to select between IDE and AHCI. For IDE the device ID is 0x0611.

libflashrom

The real life usage of flashrom_flash_probe_v2 discovered the issue, the error messages as below:

error: variable 'flashctx' has initializer but incomplete type
error: storage size of 'flashctx' isn't known

New API method flashrom_create_context is created to fix this. flashrom_create_context does create and all initialisations needed for flash context. It need to be called prior to any other API calls that require flash context.

The issue was a good motivation to write a new test which is built and runs as an external client of libflashrom. The test runs in a separate test executable to achieve this. As a bonus, test code in tests/external_client.c is an example how to use libflashrom API.

Misc updates

  • tests: Add tests which run a chain of operations

  • cli_classic.c: Print runtime measurement in seconds in debug

  • Add guard for compare_region_with_dump()

  • build: only add git describe for git checkouts

  • pcidev.h: Extract pcidev declarations to a separate header

  • doc: Add page to publish license info on the website

  • sb600spi: Check if SPI BAR register has valid value

  • spi.h: Move SPI declarations from chipdrivers.h to spi.h

  • parallel.h: Extract parallel declarations to a separate header

  • doc: Disable auto-conversion of -- to en-dash on html pages

  • serial.h: Extract serial declarations to a separate header

  • helpers_fileio.c: fix fsync() check (fix compilation issue for Android)

  • flashchips: Add Spansion S25FL512S: pretty print status register 2

  • pcidev: support programmers that don't need the ROM BAR and use config space registers

  • tests/spidriver.c: Fix Windows compilation (see also https://ticket.coreboot.org/issues/602)