stable.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
From: Greg KH <gregkh@linuxfoundation.org>
To: Christoffer Dall <christoffer.dall@arm.com>
Cc: marc.zyngier@arm.com, stable@vger.kernel.org
Subject: Re: WTF: patch "[PATCH] arm/arm64: KVM: Add PSCI version selection API" was seriously submitted to be applied to the 4.16-stable tree?
Date: Mon, 30 Apr 2018 08:09:26 -0700	[thread overview]
Message-ID: <20180430150926.GC31520@kroah.com> (raw)
In-Reply-To: <20180430143748.GK12204@C02W217FHV2R.local>

On Mon, Apr 30, 2018 at 04:37:48PM +0200, Christoffer Dall wrote:
> On Sun, Apr 29, 2018 at 02:34:45PM +0200, gregkh@linuxfoundation.org wrote:
> > The patch below was submitted to be applied to the 4.16-stable tree.
> > 
> > I fail to see how this patch meets the stable kernel rules as found at
> > Documentation/process/stable-kernel-rules.rst.
> > 
> > I could be totally wrong, and if so, please respond to 
> > <stable@vger.kernel.org> and let me know why this patch should be
> > applied.  Otherwise, it is now dropped from my patch queues, never to be
> > seen again.
> 
> This patch ensures that current userspace drivers of KVM VMs will fail
> migration to targets that do not support spectre/meltdown mitigations.
> Without this patch, VMs can be migrated to hosts that do not have
> mitigation support without any warning to the system admin.  We
> considered this a real security issue as per the stable kernel rules.
> 
> If you disagree, feel free to drop this patch without further
> discussion.
> 
> Thanks,
> -Christoffer
> 
> > 
> > ------------------ original commit in Linus's tree ------------------
> > 
> > From 85bd0ba1ff9875798fad94218b627ea9f768f3c3 Mon Sep 17 00:00:00 2001
> > From: Marc Zyngier <marc.zyngier@arm.com>
> > Date: Sun, 21 Jan 2018 16:42:56 +0000
> > Subject: [PATCH] arm/arm64: KVM: Add PSCI version selection API
> > 
> > Although we've implemented PSCI 0.1, 0.2 and 1.0, we expose either 0.1
> > or 1.0 to a guest, defaulting to the latest version of the PSCI
> > implementation that is compatible with the requested version. This is
> > no different from doing a firmware upgrade on KVM.
> > 
> > But in order to give a chance to hypothetical badly implemented guests
> > that would have a fit by discovering something other than PSCI 0.2,
> > let's provide a new API that allows userspace to pick one particular
> > version of the API.
> > 
> > This is implemented as a new class of "firmware" registers, where
> > we expose the PSCI version. This allows the PSCI version to be
> > save/restored as part of a guest migration, and also set to
> > any supported version if the guest requires it.
> > 
> > Cc: stable@vger.kernel.org #4.16
> > Reviewed-by: Christoffer Dall <cdall@kernel.org>
> > Signed-off-by: Marc Zyngier <marc.zyngier@arm.com>

Also, it looks like this applies cleanly to 4.14.y, do you want it there
as well?

thanks,

greg k-h

  parent reply	other threads:[~2018-04-30 15:09 UTC|newest]

Thread overview: 6+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2018-04-29 12:34 WTF: patch "[PATCH] arm/arm64: KVM: Add PSCI version selection API" was seriously submitted to be applied to the 4.16-stable tree? gregkh
2018-04-30 14:37 ` Christoffer Dall
2018-04-30 15:08   ` Greg KH
2018-04-30 15:09   ` Greg KH [this message]
2018-04-30 15:12     ` Marc Zyngier
2018-04-30 15:25       ` Greg KH

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20180430150926.GC31520@kroah.com \
    --to=gregkh@linuxfoundation.org \
    --cc=christoffer.dall@arm.com \
    --cc=marc.zyngier@arm.com \
    --cc=stable@vger.kernel.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).