Re: [PATCH 1/2] KVM: MMU: fix SMAP virtualization

2015-06-08 Thread Vinson Lee
On Tue, May 26, 2015 at 7:53 PM, Xiao Guangrong wrote: > > > On 05/26/2015 10:48 PM, Paolo Bonzini wrote: >> >> >> >> On 26/05/2015 16:45, Edward Cree wrote: > > This breaks older compilers that can't initialize anon structures. > > How old ? Even gcc 3.1 says you can use unnamed s

[stable request 3.4 3.10] nEPT: Nested INVEPT

2014-12-12 Thread Vinson Lee
Please consider upstream 3.12 commit bfd0a56b90005f8c8a004baf407ad90045c2b11e "nEPT: Nested INVEPT" for stable trees 3.4 and 3.10. This patch addresses CVE-2014-3645. It has already been backported to 3.2 in 3.2.64. commit bfd0a56b90005f8c8a004baf407ad90045c2b11e Author: Nadav Har'El Date: Mon