OSDN Git Service

x86/speculation: Include unprivileged eBPF status in Spectre v2 mitigation reporting
authorJosh Poimboeuf <jpoimboe@redhat.com>
Fri, 18 Feb 2022 19:49:08 +0000 (11:49 -0800)
committerBorislav Petkov <bp@suse.de>
Mon, 21 Feb 2022 09:21:47 +0000 (10:21 +0100)
commit44a3918c8245ab10c6c9719dd12e7a8d291980d8
tree1dacbf59f0672a0cfeea601cf1b338d9ed74bc80
parent5ad3eb1132453b9795ce5fd4572b1c18b292cca9
x86/speculation: Include unprivileged eBPF status in Spectre v2 mitigation reporting

With unprivileged eBPF enabled, eIBRS (without retpoline) is vulnerable
to Spectre v2 BHB-based attacks.

When both are enabled, print a warning message and report it in the
'spectre_v2' sysfs vulnerabilities file.

Signed-off-by: Josh Poimboeuf <jpoimboe@redhat.com>
Signed-off-by: Borislav Petkov <bp@suse.de>
Reviewed-by: Thomas Gleixner <tglx@linutronix.de>
arch/x86/kernel/cpu/bugs.c
include/linux/bpf.h
kernel/sysctl.c