Set SHA-256 hash of the verified boot key in attestation information.

Currently, bootloader passes the original verified boot key to keymint
when the device is in locked state, which keymint passes to attestation
information.
This CL sets SHA-256 hash of the verified boot key in attestation
information.

Test: Tested by printing the verified boot key in attestation
information from the CTS test, when the device is in locked state.

Bug: 192634248

Change-Id: Ie29ba7e3b890c0e8d65ee2b641980a3529341ee3
1 file changed