×

Software revocation infrastructure

  • US 9,298,923 B2
  • Filed: 09/04/2013
  • Issued: 03/29/2016
  • Est. Priority Date: 09/04/2013
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • distributing, over a network, multiple instances of a signed software component to multiple devices, the instances including an identification of a revocation authority;

    noting, by a processor of the revocation authority, a vulnerability in a version of the signed software component;

    identifying, by the processor of the revocation authority, a first signature that was used to sign the version of the signed software component;

    receiving a request, at the processor of the revocation authority, for a revocation message of the signed software component; and

    transmitting, by the processor of the revocation authority, the revocation message in response to the request, the revocation message including mitigation information only for the version of the signed software component that is signed by the first signature on one or more of the devices and including a second signature;

    wherein the mitigation information includes information to reduce or remove the vulnerability;

    wherein the revocation message disables the version of the signed software component until the vulnerability has been mitigated.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×