lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <8826a146-ba01-4f97-9fc5-7bf42c1e768d@intel.com>
Date: Sat, 4 Oct 2025 20:58:05 -0700
From: Dave Hansen <dave.hansen@...el.com>
To: Borislav Petkov <bp@...en8.de>,
 Xose Vazquez Perez <xose.vazquez@...il.com>
Cc: Thomas Gleixner <tglx@...utronix.de>, Ingo Molnar <mingo@...hat.com>,
 "H. Peter Anvin" <hpa@...or.com>, Peter Zijlstra <peterz@...radead.org>,
 Josh Poimboeuf <jpoimboe@...nel.org>,
 Pawan Gupta <pawan.kumar.gupta@...ux.intel.com>,
 Nikolay Borisov <nik.borisov@...e.com>,
 Alex Murray <alex.murray@...onical.com>,
 Andrew Cooper <andrew.cooper3@...rix.com>,
 Sohil Mehta <sohil.mehta@...el.com>,
 Greg Kroah-Hartman <gregkh@...uxfoundation.org>,
 Dave Hansen <dave.hansen@...ux.intel.com>, X86-ML <x86@...nel.org>,
 KERNEL-ML <linux-kernel@...r.kernel.org>
Subject: Re: [PATCH RFC] x86/microcode/intel: Refresh the revisions that
 determine old_microcode to 20250812 (Aug 2025)

On 10/4/25 19:42, Borislav Petkov wrote:
> This is turning into exactly what I was afraid and I warned it would turn onto:
> 
> 1. https://git.kernel.org/tip/952df63ef426b21d6da14bb48748f12b0ae2fe36 - we *just* updated it and there's already a new one
> 
> 2. Random people - not Intel - are going to be sending updates too.
> 
> This is a mess waiting to happen. ;-/

In the end, we've got an lightly documented patch that doesn't make a
lot of sense to apply. Not exactly a unique situation. ;)

Xose, do you have any specific, practical reasons this should be
applied? Honestly, I don't hold the "HIGH" Intel SA rating in super high
regard.

In short, why do you care?

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ