All of lore.kernel.org
 help / color / mirror / Atom feed
* [PATCH 0/2] vapic: confine the VAPIC region to 0xc0000..0xe0000
@ 2026-08-26 18:15 Paolo Bonzini
  2026-08-26 18:15 ` [PATCH 1/2] i386/vapic: unref MemoryRegion if vapic_map_rom_writable fails Paolo Bonzini
  2026-08-26 18:15 ` [PATCH 2/2] vapic: confine the VAPIC region to 0xc0000..0xe0000 Paolo Bonzini
  0 siblings, 2 replies; 5+ messages in thread
From: Paolo Bonzini @ 2026-08-26 18:15 UTC (permalink / raw)
  To: qemu-devel

The VAPIC region is mapped as writable RAM, at very high priority,
above existing memory.  If the guest is allowed to map it everywhere,
it can overlap PCI BARs or even SMRAM.  Ensure that the whole
region first in the 128K of low memory that are reserved to
option ROMs.

Patch 1 is a separate bugfix that I noticed while working on
this area, while patch 2 is the actual fix.

Paolo Bonzini (2):
  i386/vapic: unref MemoryRegion if vapic_map_rom_writable fails
  vapic: confine the VAPIC region to 0xc0000..0xe0000

 hw/i386/vapic.c | 18 +++++++++++++++++-
 1 file changed, 17 insertions(+), 1 deletion(-)

-- 
2.55.0



^ permalink raw reply	[flat|nested] 5+ messages in thread

end of thread, other threads:[~2026-08-27  9:05 UTC | newest]

Thread overview: 5+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2026-08-26 18:15 [PATCH 0/2] vapic: confine the VAPIC region to 0xc0000..0xe0000 Paolo Bonzini
2026-08-26 18:15 ` [PATCH 1/2] i386/vapic: unref MemoryRegion if vapic_map_rom_writable fails Paolo Bonzini
2026-08-27  9:05   ` Philippe Mathieu-Daudé
2026-08-26 18:15 ` [PATCH 2/2] vapic: confine the VAPIC region to 0xc0000..0xe0000 Paolo Bonzini
2026-08-26 18:58   ` Philippe Mathieu-Daudé

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.