mirror of https://lore.kernel.org/lkml/
 help / color / mirror / Atom feed
* Does srso safe RET mitigation require microcode update?
@ 2023-08-14  9:00 Xi Ruoyao
  2023-08-14  9:10 ` Borislav Petkov
  0 siblings, 1 reply; 6+ messages in thread
From: Xi Ruoyao @ 2023-08-14  9:00 UTC (permalink / raw)
  To: x86; +Cc: linux-kernel, Borislav Petkov (AMD), Rainer Fiebig

Hi,

There seems a difference between Documentation/admin-guide/hw-
vuln/srso.rst and the actual behavior.  The documentation says:

   First of all, it is required that the latest microcode be loaded for
   mitigations to be effective.

And:

    * 'Vulnerable: no microcode':
   
      The processor is vulnerable, no microcode extending IBPB
      functionality to address the vulnerability has been applied.

Per the text, if there is no firmware update, the system is just
vulnerable.  But on a real Zen 3 system, the spec_rstack_overflow file
contains "Mitigation: safe RET, no microcode".

So we are puzzled now: is this system vulnerable or mitigated?

-- 
Xi Ruoyao <xry111@xry111.site>
School of Aerospace Science and Technology, Xidian University

^ permalink raw reply	[flat|nested] 6+ messages in thread

end of thread, other threads:[~2023-08-14 12:53 UTC | newest]

Thread overview: 6+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2023-08-14  9:00 Does srso safe RET mitigation require microcode update? Xi Ruoyao
2023-08-14  9:10 ` Borislav Petkov
2023-08-14  9:47   ` Rainer Fiebig
2023-08-14 10:11     ` Borislav Petkov
2023-08-14 11:21       ` Rainer Fiebig
2023-08-14 12:52         ` Borislav Petkov

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox

all inboxes | Powered by JetHome®