diff --git a/ci/check_changelog.sh b/ci/check_changelog.sh index 03618fb73a..b6662e8a23 100755 --- a/ci/check_changelog.sh +++ b/ci/check_changelog.sh @@ -4,7 +4,15 @@ set -u base_branch=main fail=0 -subdirs="core core/embed/boardloader core/embed/bootloader core/embed/bootloader_ci legacy/bootloader legacy/firmware legacy/intermediate_fw python" +subdirs="core + core/embed/boardloader + core/embed/bootloader + core/embed/bootloader_ci + core/embed/prodtest + legacy/bootloader + legacy/firmware + legacy/intermediate_fw + python" # $ignored_files is a newline-separated list of patterns for grep # therefore there must not be empty lines at start or end diff --git a/core/embed/prodtest/CHANGELOG.md b/core/embed/prodtest/CHANGELOG.md index 4b3881b1df..0cb3e02723 100644 --- a/core/embed/prodtest/CHANGELOG.md +++ b/core/embed/prodtest/CHANGELOG.md @@ -1,4 +1,16 @@ +## 0.2.4 [20th December 2023] + +### Added + +- [T2B1] `SEC READ` to read out value of SEC counter. +- [T2B1] Check certificate chain upon `CERTDEV READ`, to block bad Optiga signatures + from being written to device. + +### Fixed + +- [T2B1] Improve Optiga metadata handling. + ## 0.2.3 [06th October 2023] ### Added diff --git a/core/embed/prodtest/version.h b/core/embed/prodtest/version.h index ab8bf250c2..904fdd76f3 100644 --- a/core/embed/prodtest/version.h +++ b/core/embed/prodtest/version.h @@ -1,6 +1,6 @@ #define VERSION_MAJOR 0 #define VERSION_MINOR 2 -#define VERSION_PATCH 4 +#define VERSION_PATCH 5 #define VERSION_BUILD 0 #define FIX_VERSION_MAJOR 0 diff --git a/core/embed/vendorheader/T2B1/vendorheader_prodtest_signed_prod.bin b/core/embed/vendorheader/T2B1/vendorheader_prodtest_signed_prod.bin new file mode 100644 index 0000000000..028e040c3d Binary files /dev/null and b/core/embed/vendorheader/T2B1/vendorheader_prodtest_signed_prod.bin differ