qemu-devel.nongnu.org archive mirror
 help / color / mirror / Atom feed
* [Qemu-devel] Do I need update the microcode of virtual machine
@ 2018-01-18 10:38 Li Qiang
  2018-01-18 10:43 ` Paolo Bonzini
  2018-01-18 10:49 ` Daniel P. Berrange
  0 siblings, 2 replies; 6+ messages in thread
From: Li Qiang @ 2018-01-18 10:38 UTC (permalink / raw)
  To: Paolo Bonzini; +Cc: Qemu Developers

Hi Paolo, all,

I have a question about the intel microcode update for spectre variant#2.
>From my understanding, there is no need to update the microcode of VMs
because the kvm has expose the SPEC_CTL and PRED_CMD to the guest.
Also, if we need to update the micorcode in guest, who is the vendor for
this.
>From the hyper-v, I think I'm right.
-->
https://docs.microsoft.com/en-us/virtualization/hyper-v-on-windows/CVE-2017-5715-and-hyper-v-vms

But upon I update the centos guest, the host kvm/qemu has been updated.
The IBPB_ENABLED and IBRS_ENABLED are both zero if I don't update the
microcode in the guest.
If I update the guest micorcode, the are both 1.

So I want to know, if I should update the microcode in guest.
If the answer is Yes, then what about the Windows guest, how to update the
microcode?


Thanks,
Li Qiang

^ permalink raw reply	[flat|nested] 6+ messages in thread

end of thread, other threads:[~2018-01-18 11:24 UTC | newest]

Thread overview: 6+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2018-01-18 10:38 [Qemu-devel] Do I need update the microcode of virtual machine Li Qiang
2018-01-18 10:43 ` Paolo Bonzini
2018-01-18 10:48   ` Li Qiang
2018-01-18 10:50     ` Paolo Bonzini
2018-01-18 10:49 ` Daniel P. Berrange
2018-01-18 11:23   ` Li Qiang

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).