From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Date: Thu, 8 Feb 2018 15:48:28 +0200 From: Jarkko Sakkinen To: Pavel Machek Cc: Cedric Blancher , platform-driver-x86@vger.kernel.org, x86@kernel.org, Linux Kernel Mailing List , Borislav Petkov , "David S. Miller" , Greg Kroah-Hartman , Grzegorz Andrejczuk , Haim Cohen , Ingo Molnar , Janakarajan Natarajan , Jim Mattson , Kan Liang , "Kirill A. Shutemov" , Kyle Huey , Len Brown , "open list:DOCUMENTATION" , "open list:FILESYSTEMS (VFS and infrastructure)" , Mauro Carvalho Chehab , Paolo Bonzini , Piotr Luc , Radim =?utf-8?B?S3LEjW3DocWZ?= , Randy Dunlap , Sean Christopherson , Thomas Gleixner , Tom Lendacky , Vikas Shivappa Subject: Re: [PATCH v6 00/11] Intel SGX Driver Message-ID: <20180208134828.hkrslcoa5xzznkj3@linux.intel.com> References: <20171125193132.24321-1-jarkko.sakkinen@linux.intel.com> <20180109142730.ndhxmw6p22kae5fv@linux.intel.com> <20180208084653.GA4595@amd> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20180208084653.GA4595@amd> Sender: linux-kernel-owner@vger.kernel.org List-ID: On Thu, Feb 08, 2018 at 09:46:53AM +0100, Pavel Machek wrote: > On Tue 2018-01-09 16:27:30, Jarkko Sakkinen wrote: > > On Thu, Jan 04, 2018 at 03:17:24PM +0100, Cedric Blancher wrote: > > > So how does this protect against the MELTDOWN attack (CVE-2017-5754) > > > and the MELTATOMBOMBA4 worm which uses this exploit? > > > > > > Ced > > > > Everything going out of L1 gets encrypted. This is done to defend > > against peripheral like adversaries and should work also against > > meltdown. > > Yeah, but useless against spectre and ability to introduce bit flips > means this is generally useless... You are right. And what I said was simply false. In fact, the encryption is done in LCC. I'm sorry that I didn't response to my response and gave incorrect info. I simply forgot to do this, no other excuses. /Jarkko