Skip to content

Commit 3a78066

Browse files
committed
docs: migration-guide-4.3: Add TF-M attestation issue
Add documentation describing a TF-M attestation issue that prevents firmware-over-the-air (FOTA) upgrades between affected Zephyr releases. Recommend a direct upgrade to Zephyr v4.3.0 to avoid attestation and upgrade compatibility issues. Signed-off-by: BUDKE Gerson Fernando <gerson.budke@leica-geosystems.com>
1 parent c4f3344 commit 3a78066

File tree

1 file changed

+11
-0
lines changed

1 file changed

+11
-0
lines changed

doc/releases/migration-guide-4.3.rst

Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -537,6 +537,17 @@ Trusted Firmware-M
537537
confirming them with ``psa_fwu_accept()``. Otherwise, the images will roll back on the next
538538
reboot.
539539

540+
* A compatibility issue was identified in the TF-M attestation procedure introduced
541+
after the TF-M v2.1.0 be release. As a result, systems using TF-M v2.1.0 cannot be
542+
upgraded to any later TF-M version without encountering failures.
543+
This limitation affects Zephyr versions using TF-M v2.1.0 through v2.1.2 specifically,
544+
Zephyr v3.7 through v4.2, preventing seamless upgrades between these releases.
545+
The issue was resolved in the TF-M mainline as of October 25 and the fix is included
546+
in Zephyr v4.3.0. Users are advised to migrate directly from any earlier Zephyr
547+
release to Zephyr v4.3.0 to ensure full TF-M attestation functionality and upgrade
548+
compatibility.
549+
(:github:`94859`)
550+
540551
* Support for automatically downloading MCUboot and ethos by CMake in a build has been removed,
541552
the in-tree versions of these modules will be used instead. To use custom versions, create a
542553
:ref:`west manifest <west-manifest-files>` which pulls in the desired versions of these

0 commit comments

Comments
 (0)