Hi!It looks like 5.10.105 will be "fun" release. There's big series ofarm64 related speculation tweaks, including |61f85b56f 558c30 o: 5.10| arm64: Mitigate spectre style branch history side channelsAnd apparently there are some problems on x86-64 side, too: |d185aa3cb e9b601 .: 5.10| x86/speculation: Update link to AMD speculation whitepaper |edc29f23a eafd98 o: 5.10| x86/speculation: Warn about Spectre v2 LFENCE mitigation |67997c824 0de05d o: 5.10| x86/speculation: Warn about eIBRS + LFENCE + Unprivileged eBPF + SMTWe have seen worse stuff for a hardware bug mitigation before. Scarything here is that arm64 patches are queued against 5.10 but not 4.19or earlier.Let me reiterate again that using complex out-of-order CPU is a badidea if you care about security.Let me reiterate that JITs such as eBPF are complex/dangerous andespecially unpriviledged eBPF is risky.
v |316f1dd5e 44a391 o: 5.10| x86/speculation: Include unprivileged eBPF status in Spectre v2 mitigation reportingBest regards, Pavel--DENX Software Engineering GmbH, Managing Director: Wolfgang DenkHRB 165235 Munich, Office: Kirchenstr.5, D-82194 Groebenzell, Germany
© 2022 Groups.io