lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date:   Thu, 28 Sep 2023 09:30:22 +0200
From:   Borislav Petkov <bp@...en8.de>
To:     Pu Wen <pu_wen@...mail.com>
Cc:     mingo@...hat.com, dave.hansen@...ux.intel.com, x86@...nel.org,
        hpa@...or.com, peterz@...radead.org, kim.phillips@....com,
        linux-kernel@...r.kernel.org, Pu Wen <puwen@...on.cn>,
        stable@...r.kernel.org
Subject: Re: [PATCH] x86/srso: Add SRSO mitigation for Hygon processors

On Thu, Sep 28, 2023 at 02:59:16PM +0800, Pu Wen wrote:
> From: Pu Wen <puwen@...on.cn>
> 
> Add mitigation for the speculative return stack overflow vulnerability
> which exists on Hygon processors.
> 
> Signed-off-by: Pu Wen <puwen@...on.cn>
> Cc: <stable@...r.kernel.org>
> ---
>  arch/x86/kernel/cpu/common.c | 2 +-
>  1 file changed, 1 insertion(+), 1 deletion(-)
> 
> diff --git a/arch/x86/kernel/cpu/common.c b/arch/x86/kernel/cpu/common.c
> index 382d4e6b848d..4e5ffc8b0e46 100644
> --- a/arch/x86/kernel/cpu/common.c
> +++ b/arch/x86/kernel/cpu/common.c
> @@ -1303,7 +1303,7 @@ static const struct x86_cpu_id cpu_vuln_blacklist[] __initconst = {
>  	VULNBL_AMD(0x15, RETBLEED),
>  	VULNBL_AMD(0x16, RETBLEED),
>  	VULNBL_AMD(0x17, RETBLEED | SMT_RSB | SRSO),
> -	VULNBL_HYGON(0x18, RETBLEED | SMT_RSB),
> +	VULNBL_HYGON(0x18, RETBLEED | SMT_RSB | SRSO),
>  	VULNBL_AMD(0x19, SRSO),
>  	{}
>  };
> -- 

Acked-by: Borislav Petkov (AMD) <bp@...en8.de>

-- 
Regards/Gruss,
    Boris.

https://people.kernel.org/tglx/notes-about-netiquette

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ