From mboxrd@z Thu Jan 1 00:00:00 1970 From: Paolo Bonzini Subject: Re: [PATCH 1/2] KVM: MMU: fix ept=0/pte.u=0/pte.w=0/CR0.WP=0/CR4.SMEP=1/EFER.NX=0 combo Date: Thu, 10 Mar 2016 11:01:26 +0100 Message-ID: <56E145F6.6030000@redhat.com> References: <1457437467-65707-1-git-send-email-pbonzini@redhat.com> <1457437467-65707-2-git-send-email-pbonzini@redhat.com> <56E12FF0.90202@linux.intel.com> Mime-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit Cc: stable@vger.kernel.org, Andy Lutomirski To: Xiao Guangrong , linux-kernel@vger.kernel.org, kvm@vger.kernel.org Return-path: In-Reply-To: <56E12FF0.90202@linux.intel.com> Sender: stable-owner@vger.kernel.org List-Id: kvm.vger.kernel.org On 10/03/2016 09:27, Xiao Guangrong wrote: > So it only hurts the box which has cpu_has_load_ia32_efer support otherwise > NX is inherited from kernel (kernel always sets NX if CPU supports it), > right? Yes, but I think !cpu_has_load_ia32_efer && SMEP does not exist. On the other hand it's really only when disabling ept, so it's a weird corner case that only happens during testing. Paolo