From mboxrd@z Thu Jan 1 00:00:00 1970 From: Zefan Li Subject: Re: [stable request 3.4 3.10] nEPT: Nested INVEPT Date: Wed, 24 Dec 2014 15:58:08 +0800 Message-ID: <549A7210.4010807@huawei.com> References: <548C0232.7030007@redhat.com> Mime-Version: 1.0 Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: 7bit Cc: Vinson Lee , , "Nadav Har'El" , Xiao Guangrong , "Jun Nakajima" , Xinhao Xu , "Yang Zhang" , Gleb Natapov , To: Paolo Bonzini Return-path: In-Reply-To: <548C0232.7030007@redhat.com> Sender: stable-owner@vger.kernel.org List-Id: kvm.vger.kernel.org On 2014/12/13 17:09, Paolo Bonzini wrote: > > > On 13/12/2014 02:13, Vinson Lee wrote: >> Please consider upstream 3.12 commit >> bfd0a56b90005f8c8a004baf407ad90045c2b11e "nEPT: Nested INVEPT" for >> stable trees 3.4 and 3.10. This patch addresses CVE-2014-3645. It has >> already been backported to 3.2 in 3.2.64. > > Note that the patch for 3.4 and 3.10 can be much simpler: > > https://lkml.org/lkml/2014/11/2/48 > I've applied the simpler version to 3.4. Thanks!