Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-06-09 Thread Matt B
> From: Andrew Luke Nesbit > To: coreboot@coreboot.org > Subject: Re: [coreboot] When does AMD release the fam15 spectre > microcode updates? > Message-ID: > Content-Type: text/plain; charset=utf-8 > > On 23/05/2018 20:55, ron minnich wrote: > > > > >

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-05-28 Thread Ivan Ivanov
Maybe it just AMD's microcode versioning got messed up and this is indeed the latest microcode despite its' lower number, but the only way to check it - is to test both microcodes for their degree of vulnerability to the Spectres. It does not make much sense to release an outdated microcode,

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-05-27 Thread Mike Banon
Hi Rudolf, Please could you try contacting this AMD person again, regarding the problems with this recent microcode update? Because it looks like he noticed your messages since he at least tried to fix, but haven't noticed mine for some reason (regarding the lack of updated 16h microcode; why

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-05-26 Thread Rudolf Marek
Hi again, Dne 23.5.2018 v 21:52 Rudolf Marek napsal(a): > For some reason this firmware update deletes microcode for Trinity CPUs, I > tried to contact the person who commit this > without any luck. As I have previously written the github page has even newer > microcode. This was fixed,

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-05-23 Thread Alberto Bursi
On 22/05/2018 07:03, taii...@gmx.com wrote: > AMD has at long last coughed up the stuff to the linux-firmware people > > https://git.kernel.org/pub/scm/linux/kernel/git/firmware/linux-firmware.git/diff/amd-ucode/microcode_amd_fam15h.bin?id=77101513943ef198e2050667c87abf19e6cbb1d8 > > The fam15h

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-05-23 Thread Andrew Luke Nesbit
On 23/05/2018 20:55, ron minnich wrote: > > > On Wed, May 23, 2018 at 12:54 PM Rudolf Marek > wrote: > > Hi all, > > Dne 22.5.2018 v 07:03 taii...@gmx.com > napsal(a): > > > > don't they have those

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-05-23 Thread ron minnich
On Wed, May 23, 2018 at 12:54 PM Rudolf Marek wrote: > Hi all, > > Dne 22.5.2018 v 07:03 taii...@gmx.com napsal(a): > > > > don't they have those in this update? Would it be possible to easily add > > the support flags without microcode for those who use libreboot? > > So

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-05-23 Thread Rudolf Marek
Hi all, Dne 22.5.2018 v 07:03 taii...@gmx.com napsal(a): > AMD has at long last coughed up the stuff to the linux-firmware people > > https://git.kernel.org/pub/scm/linux/kernel/git/firmware/linux-firmware.git/diff/amd-ucode/microcode_amd_fam15h.bin?id=77101513943ef198e2050667c87abf19e6cbb1d8 >

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-05-23 Thread taii...@gmx.com
AMD has at long last coughed up the stuff to the linux-firmware people https://git.kernel.org/pub/scm/linux/kernel/git/firmware/linux-firmware.git/diff/amd-ucode/microcode_amd_fam15h.bin?id=77101513943ef198e2050667c87abf19e6cbb1d8 The fam15h microcode update adds IBPB   * Indirect Branch

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-05-23 Thread taii...@gmx.com
My lord yet another one. https://www.phoronix.com/scan.php?page=news_item=Spectre-V3-V4-Vulnerabilities https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=3b78ce4a34b761c7fe13520de822984019ff1a8f Now we also seem to need something called SSBD (Speculative Store Bypass

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-25 Thread Ivan Ivanov
If I understood all this correctly, the updated microcodes should be forcing the CPU to do these MSR writes (or the low level action which stands behind them) by default. So that, when you got this updated microcode on your CPU, its already fixed and no further operations are necessary! At the

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-24 Thread awokd via coreboot
On Tue, April 24, 2018 11:31 pm, Nico Huber wrote: > On 25.04.2018 00:18, taii...@gmx.com wrote: >> I can't believe everyone else is so nonchalant about all this >> considering how important it is I still haven't figured out how to update >> the microcode on any of my computers - no guides I have

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-24 Thread Nico Huber
On 25.04.2018 00:18, taii...@gmx.com wrote: > On 04/17/2018 03:30 AM, Rudolf Marek wrote: > >> Hi, >> >> I found new microcode here [1], I used >> cpu00610F01_ver0600111F_2018-03-05_AC55EB96.bin as a microcode for my >> Trinity family15h CPU. >> I hacked together a new microcode header which

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-24 Thread taii...@gmx.com
On 04/17/2018 03:30 AM, Rudolf Marek wrote: > Hi, > > I found new microcode here [1], I used > cpu00610F01_ver0600111F_2018-03-05_AC55EB96.bin as a microcode for my Trinity > family15h CPU. > I hacked together a new microcode header which contains the equivalence table > etc to be able to load

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-17 Thread awokd via coreboot
On Tue, April 17, 2018 10:31 am, Rudolf Marek wrote: > Hi, > > > Dne 17.4.2018 v 12:09 awokd via coreboot napsal(a): > >> At what byte locations in the header is the equivalence table? I was >> looking for this... > > Hm I'm not aware where is it documented, or if there is some tool to >

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-17 Thread Rudolf Marek
Hi, Dne 17.4.2018 v 12:09 awokd via coreboot napsal(a): > At what byte locations in the header is the equivalence table? I was > looking for this... Hm I'm not aware where is it documented, or if there is some tool to manipulate it/dump the structure. Maybe it could be added to some existing

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-17 Thread awokd via coreboot
On Tue, April 17, 2018 7:30 am, Rudolf Marek wrote: > Hi, > > > I found new microcode here [1], I used > cpu00610F01_ver0600111F_2018-03-05_AC55EB96.bin as a microcode for my > Trinity family15h CPU. > I hacked together a new microcode header which contains the equivalence > table etc to be able

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-17 Thread Rudolf Marek
Hi, I found new microcode here [1], I used cpu00610F01_ver0600111F_2018-03-05_AC55EB96.bin as a microcode for my Trinity family15h CPU. I hacked together a new microcode header which contains the equivalence table etc to be able to load this microcode into the CPU from Linux. dd

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-12 Thread taii...@gmx.com
On 04/12/2018 09:06 AM, Mike Banon wrote: >> AMD kept their promise. > Are you sure? I cannot find any download links except for the Windows 10. > Yes, theoretically it should be possible to unpack those monstrous .cab files > aimed for Win10 and extract a microcode hidden somewhere, but this is

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-12 Thread Mike Banon
> AMD kept their promise. Are you sure? I cannot find any download links except for the Windows 10. Yes, theoretically it should be possible to unpack those monstrous .cab files aimed for Win10 and extract a microcode hidden somewhere, but this is stupid. Do you have the download links for the

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-12 Thread taii...@gmx.com
AMD kept their promise. https://www.bleepingcomputer.com/news/hardware/amd-releases-spectre-v2-microcode-updates-for-cpus-going-back-to-2011/ 0xDF372A17.asc Description: application/pgp-keys -- coreboot mailing list: coreboot@coreboot.org https://mail.coreboot.org/mailman/listinfo/coreboot

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-04-11 Thread Rudolf Marek
Hi, There is slight update from AMD [1], relevant part for you: *AMD Microcode Updates for GPZ Variant 2/Spectre* In addition, microcode updates with our recommended mitigations addressing Variant 2 (Spectre) have been released to our customers and ecosystem partners for AMD processors

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-03-31 Thread Rudolf Marek
Hi, Dne 29.3.2018 v 20:39 taii...@gmx.com napsal(a): >> Plus make sure you enable "LFENCE is dispatch serializing" - perhaps >> coreboot can do that :) it is simple >> MSR write on fam 10h 12h+ the fam 11h and 0fh dont have this MSR but LFENCE >> is dispatch serilizing. > Hmm do you have more

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-03-29 Thread taii...@gmx.com
On 02/18/2018 07:03 AM, Rudolf Marek wrote: > Hi, Thanks for the detailed reply :] > What do you want to protect? I just looked at the AMD page saw they said they would be releasing updates and I figured I should have them even though there is no description of as to what they actually will do. >

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-02-20 Thread Piotr Kubaj via coreboot
mikeb...@gmail.com>, "taii...@gmx.com" <taii...@gmx.com>, coreboot@coreboot.org Subject: Re: [coreboot] When does AMD release the fam15 spectre microcode updates? Message-ID: <e4ebdd27-1446-43eb-e902-aa1ddee54...@assembler.cz> Content-Type: text/plain; charset=is

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-02-18 Thread Rudolf Marek
Hi, What do you want to protect? If you want to protect the kernel, retpolines are OK on AMD. And you don't need any microcode update. Your CPU needs to have SMEP, otherwise you would need to clear RSB on CPL change (the paper on mentined page says that you need to do that always, but at least

Re: [coreboot] When does AMD release the fam15 spectre microcode updates?

2018-02-18 Thread Mike Banon
Maybe its' a good idea to write to AMD support regarding this question - please share a reply if you would get an answer. I'm curious about other fam15 CPUs as well, e.g. A10-5750M microcode update would be nice, maybe a request could be more general, e.g. : what is the estimated release date for

[coreboot] When does AMD release the fam15 spectre microcode updates?

2018-02-17 Thread taii...@gmx.com
They said they would be releasing opteron microcode updates in a few weeks but it has been over a month and I am wondering when this is going to happen or if it already has and I should re-compile coreboot? https://www.amd.com/en/corporate/speculative-execution "We expect to make updates