Re: AMD errata 793 (CVE-2013-6885) needs a workaround in Linux?

2014-01-14 Thread Borislav Petkov
On Tue, Jan 14, 2014 at 07:14:48AM -0800, H. Peter Anvin wrote: > Seriously, though, if this MSR can be set at runtime without problems > (which covers 98% of all workarounds, but not 100%) then it seems > like a no-brainer to just do it as long as the offending CPUs can be > identified by the

Re: AMD errata 793 (CVE-2013-6885) needs a workaround in Linux?

2014-01-14 Thread H. Peter Anvin
On 01/14/2014 03:55 AM, Borislav Petkov wrote: > On Tue, Jan 14, 2014 at 09:41:33AM -0200, Henrique de Moraes Holschuh wrote: >> I just got this assigned to amd64-microcode in Debian, but it is something >> that needs to be worked around by the EFI/BIOS and/or the kernel. >> >> Since we all know

Re: AMD errata 793 (CVE-2013-6885) needs a workaround in Linux?

2014-01-14 Thread Borislav Petkov
On Tue, Jan 14, 2014 at 09:41:33AM -0200, Henrique de Moraes Holschuh wrote: > I just got this assigned to amd64-microcode in Debian, but it is something > that needs to be worked around by the EFI/BIOS and/or the kernel. > > Since we all know just how well it pans out to depend on BIOS/EFI

AMD errata 793 (CVE-2013-6885) needs a workaround in Linux?

2014-01-14 Thread Henrique de Moraes Holschuh
I just got this assigned to amd64-microcode in Debian, but it is something that needs to be worked around by the EFI/BIOS and/or the kernel. Since we all know just how well it pans out to depend on BIOS/EFI updates for *anything*, I'm raising the issue here. IMHO looks like it would be

AMD errata 793 (CVE-2013-6885) needs a workaround in Linux?

2014-01-14 Thread Henrique de Moraes Holschuh
I just got this assigned to amd64-microcode in Debian, but it is something that needs to be worked around by the EFI/BIOS and/or the kernel. Since we all know just how well it pans out to depend on BIOS/EFI updates for *anything*, I'm raising the issue here. IMHO looks like it would be

Re: AMD errata 793 (CVE-2013-6885) needs a workaround in Linux?

2014-01-14 Thread Borislav Petkov
On Tue, Jan 14, 2014 at 09:41:33AM -0200, Henrique de Moraes Holschuh wrote: I just got this assigned to amd64-microcode in Debian, but it is something that needs to be worked around by the EFI/BIOS and/or the kernel. Since we all know just how well it pans out to depend on BIOS/EFI updates

Re: AMD errata 793 (CVE-2013-6885) needs a workaround in Linux?

2014-01-14 Thread H. Peter Anvin
On 01/14/2014 03:55 AM, Borislav Petkov wrote: On Tue, Jan 14, 2014 at 09:41:33AM -0200, Henrique de Moraes Holschuh wrote: I just got this assigned to amd64-microcode in Debian, but it is something that needs to be worked around by the EFI/BIOS and/or the kernel. Since we all know just how

Re: AMD errata 793 (CVE-2013-6885) needs a workaround in Linux?

2014-01-14 Thread Borislav Petkov
On Tue, Jan 14, 2014 at 07:14:48AM -0800, H. Peter Anvin wrote: Seriously, though, if this MSR can be set at runtime without problems (which covers 98% of all workarounds, but not 100%) then it seems like a no-brainer to just do it as long as the offending CPUs can be identified by the kernel.