|
Jiri Slaby |
fa3356 |
From: Dan Williams <dan.j.williams@intel.com>
|
|
Jiri Slaby |
fa3356 |
Date: Mon, 29 Jan 2018 17:03:21 -0800
|
|
Jiri Slaby |
fa3356 |
Subject: x86/spectre: Report get_user mitigation for spectre_v1
|
|
Jiri Slaby |
fa3356 |
Git-commit: edfbae53dab8348fca778531be9f4855d2ca0360
|
|
Jiri Slaby |
fa3356 |
Patch-mainline: v4.16-rc1
|
|
Jiri Slaby |
fa3356 |
References: bsc#1068032 CVE-2017-5753
|
|
Jiri Slaby |
fa3356 |
|
|
Jiri Slaby |
fa3356 |
Reflect the presence of get_user(), __get_user(), and 'syscall' protections
|
|
Jiri Slaby |
fa3356 |
in sysfs. The expectation is that new and better tooling will allow the
|
|
Jiri Slaby |
fa3356 |
kernel to grow more usages of array_index_nospec(), for now, only claim
|
|
Jiri Slaby |
fa3356 |
mitigation for __user pointer de-references.
|
|
Jiri Slaby |
fa3356 |
|
|
Jiri Slaby |
fa3356 |
Reported-by: Jiri Slaby <jslaby@suse.cz>
|
|
Jiri Slaby |
fa3356 |
Signed-off-by: Dan Williams <dan.j.williams@intel.com>
|
|
Jiri Slaby |
fa3356 |
Signed-off-by: Thomas Gleixner <tglx@linutronix.de>
|
|
Jiri Slaby |
fa3356 |
Cc: linux-arch@vger.kernel.org
|
|
Jiri Slaby |
fa3356 |
Cc: kernel-hardening@lists.openwall.com
|
|
Jiri Slaby |
fa3356 |
Cc: gregkh@linuxfoundation.org
|
|
Jiri Slaby |
fa3356 |
Cc: torvalds@linux-foundation.org
|
|
Jiri Slaby |
fa3356 |
Cc: alan@linux.intel.com
|
|
Jiri Slaby |
fa3356 |
Link: https://lkml.kernel.org/r/151727420158.33451.11658324346540434635.stgit@dwillia2-desk3.amr.corp.intel.com
|
|
Jiri Slaby |
fa3356 |
Signed-off-by: Jiri Slaby <jslaby@suse.cz>
|
|
Jiri Slaby |
fa3356 |
---
|
|
Jiri Slaby |
fa3356 |
arch/x86/kernel/cpu/bugs.c | 2 +-
|
|
Jiri Slaby |
fa3356 |
1 file changed, 1 insertion(+), 1 deletion(-)
|
|
Jiri Slaby |
fa3356 |
|
|
Jiri Slaby |
fa3356 |
diff --git a/arch/x86/kernel/cpu/bugs.c b/arch/x86/kernel/cpu/bugs.c
|
|
Jiri Slaby |
fa3356 |
index 400c34ec9179..fdb6068a23b5 100644
|
|
Jiri Slaby |
fa3356 |
--- a/arch/x86/kernel/cpu/bugs.c
|
|
Jiri Slaby |
fa3356 |
+++ b/arch/x86/kernel/cpu/bugs.c
|
|
Jiri Slaby |
fa3356 |
@@ -297,7 +297,7 @@ ssize_t cpu_show_spectre_v1(struct device *dev,
|
|
Jiri Slaby |
fa3356 |
{
|
|
Jiri Slaby |
fa3356 |
if (!boot_cpu_has_bug(X86_BUG_SPECTRE_V1))
|
|
Jiri Slaby |
fa3356 |
return sprintf(buf, "Not affected\n");
|
|
Jiri Slaby |
fa3356 |
- return sprintf(buf, "Vulnerable\n");
|
|
Jiri Slaby |
fa3356 |
+ return sprintf(buf, "Mitigation: __user pointer sanitization\n");
|
|
Jiri Slaby |
fa3356 |
}
|
|
Jiri Slaby |
fa3356 |
|
|
Jiri Slaby |
fa3356 |
ssize_t cpu_show_spectre_v2(struct device *dev,
|
|
Jiri Slaby |
fa3356 |
--
|
|
Jiri Slaby |
fa3356 |
2.16.1
|
|
Jiri Slaby |
fa3356 |
|