You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Merge: x86/bugs: Support new SRSO CPUID bits for AMD ZEN 5 CPUs
MR: https://gitlab.com/redhat/centos-stream/src/kernel/centos-stream-10/-/merge_requests/406
JIRA: https://issues.redhat.com/browse/RHEL-80398
MR: https://gitlab.com/redhat/centos-stream/src/kernel/centos-stream-10/-/merge_requests/406
Omitted-fix: 847f140 ("tools headers: Update the x86 headers with the kernel sources")
Patches 1, 2 & 4 support the new SRSO_USER_KERNEL_NO and SRSO_MSR_FIX
CPUID bits. Patch 3 is a bug fix that fixes a problem wrt to IBPB
on VM-Exit.
Since Zen5 (Turin) has a new x86 ID of 0x1a, the current RHEL kernel
won't enable any SRSO mitigation which isn't secure enough when dealing
with VMs.
Signed-off-by: Waiman Long <longman@redhat.com>
Approved-by: David Arcari <darcari@redhat.com>
Approved-by: Vitaly Kuznetsov <vkuznets@redhat.com>
Approved-by: Lenny Szubowicz <lszubowi@redhat.com>
Approved-by: CKI KWF Bot <cki-ci-bot+kwf-gitlab-com@redhat.com>
Merged-by: Julio Faracco <jfaracco@redhat.com>
0 commit comments