From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Jan Beulich" Subject: Re: [PATCH SpectreV1+L1TF v5 3/9] x86/hvm: block speculative out-of-bound accesses Date: Fri, 01 Feb 2019 07:31:08 -0700 Message-ID: <5C54582C02000078002132A2@prv1-mh.provo.novell.com> References: <1548772997-32742-1-git-send-email-nmanthey@amazon.de> <1548772997-32742-4-git-send-email-nmanthey@amazon.de> <5C4ED1D402000078002119E6@prv1-mh.provo.novell.com> <9C03B9BA0200004637554D14@prv1-mh.provo.novell.com> <00FAA7AF020000F8B1E090C7@prv1-mh.provo.novell.com> <00F867AF020000F8B1E090C7@prv1-mh.provo.novell.com> <5C5320140200007800212DE1@prv1-mh.provo.novell.com> <87d875f7-c756-e864-b6d7-cb43dcc8e2de@citrix.com> <5C54021D020000780021308A@prv1-mh.provo.novell.com> <7e9d89f4-f2ba-05a6-7ecf-1fc3e9dc5738@amazon.de> Mime-Version: 1.0 Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: base64 Return-path: Received: from us1-rack-dfw2.inumbo.com ([104.130.134.6]) by lists.xenproject.org with esmtp (Exim 4.89) (envelope-from ) id 1gpZqZ-0007jv-SM for xen-devel@lists.xenproject.org; Fri, 01 Feb 2019 14:31:11 +0000 In-Reply-To: <7e9d89f4-f2ba-05a6-7ecf-1fc3e9dc5738@amazon.de> Content-Disposition: inline List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Sender: "Xen-devel" To: nmanthey@amazon.de Cc: Juergen Gross , Tim Deegan , Stefano Stabellini , Wei Liu , Konrad Rzeszutek Wilk , George Dunlap , Andrew Cooper , Ian Jackson , Dario Faggioli , Martin Pohlack , Julien Grall , David Woodhouse , "Martin Mazein(amazein)" , xen-devel , Julian Stecklina , Bjoern Doebel List-Id: xen-devel@lists.xenproject.org Pj4+IE9uIDAxLjAyLjE5IGF0IDE1OjA2LCA8bm1hbnRoZXlAYW1hem9uLmRlPiB3cm90ZToKPiBP biAyLzEvMTkgMDk6MjMsIEphbiBCZXVsaWNoIHdyb3RlOgo+Pj4+PiBPbiAzMS4wMS4xOSBhdCAy MTowMiwgPGFuZHJldy5jb29wZXIzQGNpdHJpeC5jb20+IHdyb3RlOgo+Pj4gT24gMzEvMDEvMjAx OSAxNjoxOSwgSmFuIEJldWxpY2ggd3JvdGU6Cj4+Pj4+IEBAIC00MTA0LDYgKzQxMDgsMTIgQEAg c3RhdGljIGludCBodm1vcF9zZXRfcGFyYW0oCj4+Pj4+ICAgICAgaWYgKCBhLmluZGV4ID49IEhW TV9OUl9QQVJBTVMgKQo+Pj4+PiAgICAgICAgICByZXR1cm4gLUVJTlZBTDsKPj4+Pj4gIAo+Pj4+ PiArICAgIC8qCj4+Pj4+ICsgICAgICogTWFrZSBzdXJlIHRoZSBndWVzdCBjb250cm9sbGVkIHZh bHVlIGEuaW5kZXggaXMgYm91bmRlZCBldmVuIGR1cmluZwo+Pj4+PiArICAgICAqIHNwZWN1bGF0 aXZlIGV4ZWN1dGlvbi4KPj4+Pj4gKyAgICAgKi8KPj4+Pj4gKyAgICBhLmluZGV4ID0gYXJyYXlf aW5kZXhfbm9zcGVjKGEuaW5kZXgsIEhWTV9OUl9QQVJBTVMpOwo+Pj4+IEknZCBsaWtlIHRvIGNv bWUgYmFjayB0byB0aGlzIG1vZGVsIG9mIHVwZGF0aW5nIGxvY2FsIHZhcmlhYmxlczoKPj4+PiBJ cyB0aGlzIHJlYWxseSBzYWZlIHRvIGRvPyBJZiBzdWNoIGEgdmFyaWFibGUgbGl2ZXMgaW4gbWVt b3J5Cj4+Pj4gKHdoaWNoIGhlcmUgaXQgcXVpdGUgbGlrZWx5IGRvZXMpLCBkb2VzIHNwZWN1bGF0 aW9uIGFsd2F5cwo+Pj4+IHJlY29nbml6ZSB0aGUgdXBkYXRlIHRvIHRoZSB2YWx1ZT8gV291bGRu J3QgaXQgcmF0aGVyIHJlYWQKPj4+PiB3aGF0J3MgY3VycmVudGx5IGluIHRoYXQgc2xvdCwgYW5k IHJlLWRvIHRoZSBjYWxjdWxhdGlvbiBpbiBjYXNlCj4+Pj4gYSBzdWJzZXF1ZW50IHdyaXRlIGhh cHBlbnM/IChJIGtub3cgSSBkaWQgc3VnZ2VzdCBkb2luZyBzbwo+Pj4+IGVhcmxpZXIgb24sIHNv IEkgYXBvbG9naXplIGlmIHRoaXMgcmVzdWx0cyBpbiB5b3UgaGF2aW5nIHRvIGdvCj4+Pj4gYmFj ayB0byBzb21lIGVhcmxpZXIgdXNlZCBtb2RlbC4pCj4+PiBJJ20gYWZyYWlkIHRoYXQgaXMgYSB2 ZXJ5IGNvbXBsaWNhdGVkIHNldCBvZiBxdWVzdGlvbnMgdG8gYW5zd2VyLgo+Pj4KPj4+IFRoZSBw cm9jZXNzb3IgbmVlZHMgdG8gdHJhY2sgd3JpdGU9PnJlYWQgZGVwZW5kZW5jaWVzIHRvIGF2b2lk IHdhc3RpbmcgYQo+Pj4gbGFyZ2UgcXVhbnRpdHkgb2YgdGltZSBkb2luZyBlcnJvbmVvdXMgc3Bl Y3VsYXRpb24sIHRoZXJlZm9yZSBpdCBkb2VzLiAKPj4+IFBlbmRpbmcgd3JpdGVzIHdoaWNoIGhh dmUgaGFwcGVuZWQgdW5kZXIgc3BlY3VsYXRpb24gYXJlIGZvcndhcmRlZCB0bwo+Pj4gZGVwZW5k YW50IGluc3RydWN0aW9ucy4KPj4+Cj4+PiBUaGlzIGJlaGF2aW91ciBpcyB3aGF0IGdpdmVzIHJp c2UgdG8gQm91bmRzIENoZWNrIEJ5cGFzcyBTdG9yZSAtIGEgaGFsZgo+Pj4gc3BlY3RyZS12MSBn YWRnZXQgYnV0IHdpdGggYSBzdG9yZSByYXRoZXIgdGhhbiBhIHdyaXRlLiAgWW91IGNhbiBlLmcu Cj4+PiBzcGVjdWxhdGl2ZWx5IG1vZGlmeSB0aGUgcmV0dXJuIGFkZHJlc3Mgb24gdGhlIHN0YWNr LCBhbmQgaGlqYWNrCj4+PiBzcGVjdWxhdGlvbiB0byBhbiBhdHRhY2tlciBjb250cm9sbGVkIGFk ZHJlc3MgZm9yIGEgYnJpZWYgcGVyaW9kIG9mCj4+PiB0aW1lLiAgSWYgdGhlIHNwZWN1bGF0aW9u IHdpbmRvdyBpcyBsb25nIGVub3VnaCwgdGhlIHByb2Nlc3NvciBmaXJzdAo+Pj4gZm9sbG93cyB0 aGUgUlNCL1JBUyAoY29ycmVjdGx5KSwgdGhlbiBsYXRlciBub3RpY2VzIHRoYXQgdGhlIHJlYWwg dmFsdWUKPj4+IG9uIHRoZSBzdGFjayB3YXMgZGlmZmVyZW50LCBkaXNjYXJkcyB0aGUgc3BlY3Vs YXRpb24gZnJvbSB0aGUgUlNCL1JBUwo+Pj4gYW5kIHVzZXMgdGhlIGF0dGFja2VyIGNvbnRyb2xs ZWQgdmFsdWUgaW5zdGVhZCwgdGhlbiBldmVudHVhbGx5IG5vdGljZXMKPj4+IHRoYXQgYWxsIG9m IHRoaXMgd2FzIGJvZ3VzIGFuZCByZXdpbmRzIGJhY2sgdG8gdGhlIG9yaWdpbmFsIGJyYW5jaC4K Pj4+Cj4+PiBBbm90aGVyIGNvcm5lciBjYXNlIGlzIFNwZWN1bGF0aXZlIFN0b3JlIEJ5cGFzcywg d2hlcmUgbWVtb3J5Cj4+PiBkaXNhbWJpZ3VhdGlvbiBzcGVjdWxhdGlvbiBjYW4gbWlzcyB0aGUg ZmFjdCB0aGF0IHRoZXJlIGlzIGEgcmVhbAo+Pj4gd3JpdGU9PnJlYWQgZGVwZW5kZW5jeSwgYW5k IGNhdXNlIHNwZWN1bGF0aW9uIHVzaW5nIHRoZSBvbGRlciBzdGFsZQo+Pj4gdmFsdWUgZm9yIGEg cGVyaW9kIG9mIHRpbWUuCj4+Pgo+Pj4KPj4+IEFzIHRvIG92ZXJhbGwgc2FmZXR5LCBhcnJheV9p bmRleF9ub3NwZWMoKSBvbmx5IHdvcmtzIGFzIGludGVuZGVkIHdoZW4KPj4+IHRoZSBpbmRleCBy ZW1haW5zIGluIGEgcmVnaXN0ZXIgYmV0d2VlbiB0aGUgY21wL3NiYiB3aGljaCBib3VuZHMgaXQK Pj4+IHVuZGVyIHNwZWN1bGF0aW9uLCBhbmQgdGhlIGFycmF5IGFjY2Vzcy4gIFRoZXJlIGlzIG5v IHdheSB0byBndWFyYW50ZWUKPj4+IHRoaXMgcHJvcGVydHksIGFzIHRoZSBjb21waWxlciBjYW4g c3BpbGwgYW55IHZhbHVlIGlmIGl0IHRoaW5rcyBpdCBuZWVkcyB0by4KPj4+Cj4+PiBUaGUgZ2Vu ZXJhbCBzYWZldHkgb2YgdGhlIGNvbnN0cnVjdCByZWxpZXMgb24gdGhlIGZhY3QgdGhhdCBhbgo+ Pj4gb3B0aW1pc2luZyBjb21waWxlciB3aWxsIGRvIGl0cyB2ZXJ5IGJlc3QgdG8gYXZvaWQgc3Bp bGxpbmcgdmFyaWFibGUgdG8KPj4+IHRoZSBzdGFjay4KPj4gIkl0cyB2ZXJ5IGJlc3QiIG1heSBi ZSBleHRyZW1lbHkgbGltaXRlZCB3aXRoIGVub3VnaCB2YXJpYWJsZXMuCj4+IEV2ZW4gaWYgd2Ug d2VyZSB0byBhbm5vdGF0ZSB0aGVtIHdpdGggdGhlICJyZWdpc3RlciIga2V5d29yZCwKPj4gdGhh dCBzdGlsbCB3b3VsZG4ndCBoZWxwLCBhcyB0aGF0J3Mgb25seSBhIGhpbnQuIFdlIHNpbXBseSBo YXZlIG5vCj4+IHdheSB0byBjb250cm9sIHdoaWNoIHZhcmlhYmxlcyB0aGUgY29tcGlsZXIgd2Fu dHMgdG8gaG9sZCBpbgo+PiByZWdpc3RlcnMuIEkgZGFyZSB0byBndWVzcyB0aGF0IGluIHRoZSBw YXJ0aWN1bGFyIGV4YW1wbGUgYWJvdmUKPj4gaXQncyByYXRoZXIgdW5saWtlbHkgdG8gYmUgcHV0 IGluIGEgcmVnaXN0ZXIuCj4+Cj4+IEluIGFueSBldmVudCBpdCBsb29rcyBsaWtlIHlvdSBzdXBw b3J0IG15IHN1c3BpY2lvbiB0aGF0IGVhcmxpZXIKPj4gY29tbWVudHMgb2YgbWluZSBtYXkgaGF2 ZSBkcml2ZW4gdGhpbmdzIGludG8gYSBsZXNzIHNhZmUKPj4gZGlyZWN0aW9uLCBhbmQgd2UgaW5z dGVhZCBuZWVkIHRvIGFjY2VwdCB0aGUgbW9yZSBoZWF2eQo+PiBjbHV0dGVyIG9mIHNjYXR0ZXJp bmcgYXJvdW5kIGFycmF5X3thY2Nlc3MsaW5kZXh9X25vc3BlYygpCj4+IGF0IGFsbCB1c2Ugc2l0 ZXMgaW5zdGVhZCBvZiBsYXRjaGluZyB0aGUgcmVzdWx0IG9mCj4+IGFycmF5X2luZGV4X25vc3Bl YygpIGludG8gd2hhdGV2ZXIgc2hhcGUgb2YgbG9jYWwgdmFyaWFibGUuCj4+Cj4+IFdoaWNoIHJh aXNlcyBhbm90aGVyIGludGVyZXN0aW5nIHF1ZXN0aW9uOiBDYW4ndCBDU0UgYW5kCj4+IGFsaWtl IGdldCBpbiB0aGUgd2F5IGhlcmU/IE9QVElNSVpFUl9ISURFX1ZBUigpIGV4cGFuZHMKPj4gdG8g YSBub24tdm9sYXRpbGUgYXNtKCkgKGFuZCBhcyBwZXIgcmVtYXJrcyBlbHNld2hlcmUgSSdtCj4+ IHVuY29udmluY2VkIGFkZGluZyB2b2xhdGlsZSB3b3VsZCBhY3R1YWxseSBoZWxwKSwgc28gdGhl Cj4+IGNvbXBpbGVyIHJlY29nbml6aW5nIHRoZSBzYW1lIG11bHRpcGxlIHRpbWVzIChwZXJoYXBz IGluIGEKPj4gbG9vcCkgY291bGQgbWFrZSBpdCBkZWNpZGUgdG8gY2FsY3VsYXRlIHRoZSB0aGlu ZyBqdXN0IG9uY2UuCj4+IGFycmF5X2luZGV4X21hc2tfbm9zcGVjKCkgaW4gZWZmZWN0IGlzIGEg cHVyZSAoYW5kIGFjdHVhbGx5Cj4+IGV2ZW4gY29uc3QpIGZ1bmN0aW9uLCBhbmQgdGhlIGxhY2sg b2YgYSByZXNwZWN0aXZlIGF0dHJpYnV0ZQo+PiBkb2Vzbid0IG1ha2UgdGhlIGNvbXBpbGVyIG5v dCB0cmVhdCBpdCBhcyBzdWNoIGlmIGl0IHJlY29nbml6ZWQKPj4gdGhlIGZhY3QuIChJbiBlZmZl Y3Qgd2hhdCBJIGhhZCBhc2tlZCBOb3JiZXJ0IHRvIGRvIHRvIGxpbWl0Cj4+IHRoZSBjbHV0dGVy IHdhcyBqdXN0IENTRSB3aGljaCB0aGUgY29tcGlsZXIgbWF5IG9yIG1heSBub3QKPj4gaGF2ZSBy ZWNvZ25pemVkIGFueXdheS4gSU9XIEknbSBub3QgY29udmluY2VkIGdvaW5nIGJhY2sKPj4gd291 bGQgYWN0dWFsbHkgYnV5IHVzIGFueXRoaW5nLikKPiAKPiBTbyB0aGlzIG1lYW5zIEkgc2hvdWxk IHN0aWNrIHRvIHRoZSBjdXJyZW50IGFwcHJvYWNoIGFuZCBjb250aW51ZQo+IHVwZGF0aW5nIHZh cmlhYmxlcyBhZnRlciB0aGVpciBib3VuZCBjaGVjayB3aXRoIGFuIGFycmF5X2luZGV4X25vc3Bl Ywo+IGNhbGwsIGNvcnJlY3Q/CgpXZWxsLCB5ZXMsIGF0IGxlYXN0IGZvciBub3cgSSdtIG5vdCBj b252aW5jZWQgZ29pbmcgYmFjayBhbmQKcmUtaW50cm9kdWNlIHRoZSBoZWF2aWVyIGNvZGUgY2h1 cm4gd291bGQgYnV5IHVzIG11Y2guIEJ1dAp3ZSdsbCBoYXZlIHRvIHNlZSB3aGV0aGVyIGUuZy4g QW5kcmV3IGlzIG9mIGEgZGlmZmVyZW50IG9waW5pb24uCgpKYW4KCgpfX19fX19fX19fX19fX19f X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fXwpYZW4tZGV2ZWwgbWFpbGluZyBsaXN0Clhl bi1kZXZlbEBsaXN0cy54ZW5wcm9qZWN0Lm9yZwpodHRwczovL2xpc3RzLnhlbnByb2plY3Qub3Jn L21haWxtYW4vbGlzdGluZm8veGVuLWRldmVs