From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1752479AbcHHSRE (ORCPT ); Mon, 8 Aug 2016 14:17:04 -0400 Received: from mx1.redhat.com ([209.132.183.28]:47172 "EHLO mx1.redhat.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1752214AbcHHSQ7 (ORCPT ); Mon, 8 Aug 2016 14:16:59 -0400 From: =?UTF-8?q?Radim=20Kr=C4=8Dm=C3=A1=C5=99?= To: linux-kernel@vger.kernel.org, kvm@vger.kernel.org Cc: Jim Mattson , Wincy Van , Paolo Bonzini , Bandan Das Subject: [PATCH 0/2] KVM: nVMX: msr bitmaps fixes Date: Mon, 8 Aug 2016 20:16:21 +0200 Message-Id: <20160808181623.12132-1-rkrcmar@redhat.com> MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.5.16 (mx1.redhat.com [10.5.110.39]); Mon, 08 Aug 2016 18:16:59 +0000 (UTC) Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Jim found several bugs that allowed L2 to read L0's x2APIC MSRs and write to TPR, EOI, and SELF_IPI, in the worst case. The fix is split into two patches as possible causes were introduced by two different commits. I have not Cc'd stable as the patches are quite long and nVMX is not considered to be ready for production, yet. Radim Krčmář (2): KVM: nVMX: fix msr bitmaps to prevent L2 from accessing L0 x2APIC KVM: nVMX: postpone VMCS changes on MSR_IA32_APICBASE write arch/x86/kvm/vmx.c | 120 +++++++++++++++++++++++++---------------------------- 1 file changed, 57 insertions(+), 63 deletions(-) -- 2.9.2