public inbox for linux-kernel@vger.kernel.org
 help / color / mirror / Atom feed
* [PATCH 0/2] x86/sev: Rework SNP Guest Request to fix race
@ 2025-03-07  1:36 Alexey Kardashevskiy
  2025-03-07  1:36 ` [PATCH 1/2] virt: sev-guest: Allocate request data dynamically Alexey Kardashevskiy
  2025-03-07  1:37 ` [PATCH 2/2] virt: sev-guest: Move SNP Guest Request data pages handling under snp_cmd_mutex Alexey Kardashevskiy
  0 siblings, 2 replies; 8+ messages in thread
From: Alexey Kardashevskiy @ 2025-03-07  1:36 UTC (permalink / raw)
  To: x86
  Cc: linux-kernel, Thomas Gleixner, Ingo Molnar, Borislav Petkov,
	Dave Hansen, H. Peter Anvin, Tom Lendacky, Nikunj A Dadhania,
	Ard Biesheuvel, Pavan Kumar Paluri, Ashish Kalra, Paolo Bonzini,
	Michael Roth, Kevin Loughlin, Kuppuswamy Sathyanarayanan,
	Brijesh Singh, Liam Merwick, Alexey Kardashevskiy

Guest Request is a mechanism for a SNP VM to talk to the PSP described
in the GHCB spec. GHCB allows one request in flight at the time and
there is a mutex for it: msnp_cmd_mutex. Unfortunaty series of events
led to use of shared data outside of this mutex area and recent commit
ae596615d93d ("virt: sev-guest: Reduce the scope of SNP command
mutex") broke it.

The shared data includes:

- request structures in snp_guest_dev which was not a problem when
they were introduced as they were put on stack but db10cb9b5746
("virt: sevguest: Fix passing a stack buffer as a scatterlist target")
moved them to snp_guest_dev so they became shared but there was
a mutex so it was ok (not anymore);

- data pages and the number of them in Extended Guest Request.

So here are 2 patches. Reverting ae596615d93d is not an easy option as
the code developed far enough (the mutex moved and secure TSC now
calls the PSP too) to make it rather large.


This is based on sha1
277255aa69e5 Ingo Molnar "Merge branch into tip/master: 'x86/sev'".

Please comment. Thanks.



Alexey Kardashevskiy (1):
  virt: sev-guest: Move SNP Guest Request data pages handling under
    snp_cmd_mutex

Nikunj A Dadhania (1):
  virt: sev-guest: Allocate request data dynamically

 arch/x86/include/asm/sev.h              |  6 +-
 arch/x86/coco/sev/core.c                | 23 +++-----
 drivers/virt/coco/sev-guest/sev-guest.c | 58 +++++++++++++++-----
 3 files changed, 54 insertions(+), 33 deletions(-)

-- 
2.47.1


^ permalink raw reply	[flat|nested] 8+ messages in thread

end of thread, other threads:[~2025-03-07 18:25 UTC | newest]

Thread overview: 8+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2025-03-07  1:36 [PATCH 0/2] x86/sev: Rework SNP Guest Request to fix race Alexey Kardashevskiy
2025-03-07  1:36 ` [PATCH 1/2] virt: sev-guest: Allocate request data dynamically Alexey Kardashevskiy
2025-03-07 10:52   ` Alexey Kardashevskiy
2025-03-07 18:25   ` [tip: x86/urgent] " tip-bot2 for Nikunj A Dadhania
2025-03-07  1:37 ` [PATCH 2/2] virt: sev-guest: Move SNP Guest Request data pages handling under snp_cmd_mutex Alexey Kardashevskiy
2025-03-07  9:00   ` Nikunj A. Dadhania
2025-03-07 17:50   ` Tom Lendacky
2025-03-07 18:25   ` [tip: x86/urgent] " tip-bot2 for Alexey Kardashevskiy

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox