8547e28bd5
23233-hvm-cr-access.patch 23234-svm-decode-assist-base.patch 23235-svm-decode-assist-crs.patch 23236-svm-decode-assist-invlpg.patch 23238-svm-decode-assist-insn-fetch.patch 23303-cpufreq-misc.patch 23304-amd-oprofile-strings.patch 23305-amd-fam15-xenoprof.patch 23306-amd-fam15-vpmu.patch 23334-amd-fam12+14-vpmu.patch 23338-vtd-force-intremap.patch - fate#310957 - Update to Xen 4.1.1-rc1 c/s 23064 - xentrace: dynamic tracebuffer allocation xen-unstable.xentrace.dynamic_tbuf.patch xen-unstable.xentrace.empty_t_info_pages.patch xen-unstable.xentrace.verbose.patch xen-unstable.xentrace.no_gdprintk.patch xen-unstable.xentrace.comments.patch xen-unstable.xentrace.printk_prefix.patch xen-unstable.xentrace.remove_debug_printk.patch xen-unstable.xentrace.t_info_pages-formula.patch xen-unstable.xentrace.register_cpu_notifier-boot_time.patch xen-unstable.xentrace.t_info_page-overflow.patch xen-unstable.xentrace.t_info_first_offset.patch xen-unstable.xentrace.data_size__read_mostly.patch xen-unstable.xentrace.__insert_record-dst-type.patch OBS-URL: https://build.opensuse.org/package/show/Virtualization/xen?expand=0&rev=124
39 lines
1.7 KiB
Diff
39 lines
1.7 KiB
Diff
# HG changeset patch
|
|
# User Keir Fraser <keir@xen.org>
|
|
# Date 1305214920 -3600
|
|
# Node ID 9751bc49639ec4e34837545cdc982d0768e46d94
|
|
# Parent cc91832a02c7cb6b09729ca8e9fc497e5cb2ba4d
|
|
vt-d: [CVE-2011-1898] Ensure that "iommu=required" enables interrupt remapping.
|
|
|
|
Ensure that when Xen boots with "iommu=required" it will also insist
|
|
that interrupt remapping is supported and enabled. It arranges that
|
|
booting with that option on vulnerable hardware will fail, rather than
|
|
appearing to succeed but actually being vulnerable to guests.
|
|
|
|
From: Allen Kay <allen.m.kay@intel.com>
|
|
Signed-off-by: Keir Fraser <keir@xen.org>
|
|
|
|
Index: xen-4.1.1-testing/xen/drivers/passthrough/vtd/iommu.c
|
|
===================================================================
|
|
--- xen-4.1.1-testing.orig/xen/drivers/passthrough/vtd/iommu.c
|
|
+++ xen-4.1.1-testing/xen/drivers/passthrough/vtd/iommu.c
|
|
@@ -1985,6 +1985,8 @@ static int init_vtd_hw(void)
|
|
"ioapic_to_iommu: ioapic 0x%x (id: 0x%x) is NULL! "
|
|
"Will not try to enable Interrupt Remapping.\n",
|
|
apic, IO_APIC_ID(apic));
|
|
+ if ( force_iommu )
|
|
+ panic("intremap remapping failed to enable with iommu=required/force in grub\n");
|
|
break;
|
|
}
|
|
}
|
|
@@ -1998,6 +2000,9 @@ static int init_vtd_hw(void)
|
|
{
|
|
dprintk(XENLOG_WARNING VTDPREFIX,
|
|
"Interrupt Remapping not enabled\n");
|
|
+
|
|
+ if ( force_iommu && platform_supports_intremap() )
|
|
+ panic("intremap remapping failed to enable with iommu=required/force in grub\n");
|
|
break;
|
|
}
|
|
}
|