From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from atrey.karlin.mff.cuni.cz ([195.113.26.193]:39961 "EHLO atrey.karlin.mff.cuni.cz" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1750865AbeBHIq4 (ORCPT ); Thu, 8 Feb 2018 03:46:56 -0500 Date: Thu, 8 Feb 2018 09:46:53 +0100 From: Pavel Machek To: Jarkko Sakkinen Cc: Cedric Blancher , platform-driver-x86@vger.kernel.org, x86@kernel.org, Linux Kernel Mailing List , Borislav Petkov , "David S. Miller" , Greg Kroah-Hartman , Grzegorz Andrejczuk , Haim Cohen , Ingo Molnar , Janakarajan Natarajan , Jim Mattson , Kan Liang , "Kirill A. Shutemov" , Kyle Huey , Len Brown , "open list:DOCUMENTATION" , "open list:FILESYSTEMS (VFS and infrastructure)" , Mauro Carvalho Chehab , Paolo Bonzini , Piotr Luc , Radim =?utf-8?B?S3LEjW3DocWZ?= , Randy Dunlap , Sean Christopherson , Thomas Gleixner , Tom Lendacky , Vikas Shivappa Subject: Re: [PATCH v6 00/11] Intel SGX Driver Message-ID: <20180208084653.GA4595@amd> References: <20171125193132.24321-1-jarkko.sakkinen@linux.intel.com> <20180109142730.ndhxmw6p22kae5fv@linux.intel.com> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="/9DWx/yDrRhgMJTb" Content-Disposition: inline In-Reply-To: <20180109142730.ndhxmw6p22kae5fv@linux.intel.com> Sender: linux-fsdevel-owner@vger.kernel.org List-ID: --/9DWx/yDrRhgMJTb Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Tue 2018-01-09 16:27:30, Jarkko Sakkinen wrote: > On Thu, Jan 04, 2018 at 03:17:24PM +0100, Cedric Blancher wrote: > > So how does this protect against the MELTDOWN attack (CVE-2017-5754) > > and the MELTATOMBOMBA4 worm which uses this exploit? > >=20 > > Ced >=20 > Everything going out of L1 gets encrypted. This is done to defend > against peripheral like adversaries and should work also against > meltdown. Yeah, but useless against spectre and ability to introduce bit flips means this is generally useless... Pavel --=20 (english) http://www.livejournal.com/~pavelmachek (cesky, pictures) http://atrey.karlin.mff.cuni.cz/~pavel/picture/horses/blo= g.html --/9DWx/yDrRhgMJTb Content-Type: application/pgp-signature; name="signature.asc" Content-Description: Digital signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iEYEARECAAYFAlp8Dn0ACgkQMOfwapXb+vIc5wCggjj5Yqpg/20rvxoXsoWVBGhD Hm8AnRmP5lbu8SNf/Qm+wtDdkd+haUfn =INFf -----END PGP SIGNATURE----- --/9DWx/yDrRhgMJTb--