Linux kernel -stable discussions
 help / color / mirror / Atom feed
From: "Moritz Mühlenhoff" <mmuhlenhoff@wikimedia.org>
To: Alexandre Chartre <alexandre.chartre@oracle.com>
Cc: Salvatore Bonaccorso <carnil@debian.org>,
	stable@vger.kernel.org, regressions@lists.linux.dev,
	Pawan Gupta <pawan.kumar.gupta@linux.intel.com>,
	Dave Hansen <dave.hansen@linux.intel.com>,
	Josh Poimboeuf <jpoimboe@kernel.org>
Subject: Re: Regression between 6.1.135 and 6.1.139, possibly related to ITS mitigations
Date: Thu, 22 May 2025 09:21:29 +0200	[thread overview]
Message-ID: <aC7QeZiJVuURxptu@pastis.westfalen.local> (raw)
In-Reply-To: <5d97e611-919e-45fa-87e5-00a489870f8c@oracle.com>

Am Wed, May 21, 2025 at 11:24:52PM +0200 schrieb Alexandre Chartre:
> 
> > > On Linux 6.1.135 every works fine with both the 20250211 and
> > > 20250512 microcode releases (kern.log is attached as
> > > 6.1.135-feb-microcode.log and 6.1.135-may-microcode.log)
> > > 
> > > With 6.1.139 and the February microcode, oopses appear related
> > > to clear_bhb_loop() (which may be related to "x86/its: Align
> > > RETs in BHB clear sequence to avoid thunking"?). This is
> > > captured in 6.1.139-feb-microcode.log.
> > > 
> > > With 6.1.139 and the May microcode, the system mostly
> > > crashes on bootup (in my tests it crashed in three out of
> > > four attempts). I've captured both the crash
> > > (6.1.139-may-microcode-crash.log) and a working boot
> > > (6.1.139-may-microcode-noncrash.log).
> > > 
> > > If you need any additional information, please let me know!
> > 
> > After looking at your crash logs in more detail, I suspect that your
> > issue is the same root cause as spotted as well for the 5.15 series in
> > https://lore.kernel.org/all/81cd1d38-8856-4b27-921d-839d9e385942@oracle.com/
> > 
> > I assume you can confirm as well that disabling the ITS mitigation
> > with indirect_target_selection=off makes the system boot?
> > 
> > Regards,
> > Salvatore
> 
> And this should be fixed by this patch:
> 
> x86/modules: Set VM_FLUSH_RESET_PERMS in module_alloc()

Confirmed: Running 6.1.139 plus "x86/modules: Set VM_FLUSH_RESET_PERMS
in module_alloc()" resolves the issue: I've rebooted the affected server
four times with a custom build and the oopses are gone and it reboots
reliably.

Cheers,
        Moritz

      reply	other threads:[~2025-05-22  7:21 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2025-05-21 13:15 Regression between 6.1.135 and 6.1.139, possibly related to ITS mitigations Moritz Mühlenhoff
2025-05-21 20:30 ` Salvatore Bonaccorso
2025-05-21 21:24   ` Alexandre Chartre
2025-05-22  7:21     ` Moritz Mühlenhoff [this message]

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=aC7QeZiJVuURxptu@pastis.westfalen.local \
    --to=mmuhlenhoff@wikimedia.org \
    --cc=alexandre.chartre@oracle.com \
    --cc=carnil@debian.org \
    --cc=dave.hansen@linux.intel.com \
    --cc=jpoimboe@kernel.org \
    --cc=pawan.kumar.gupta@linux.intel.com \
    --cc=regressions@lists.linux.dev \
    --cc=stable@vger.kernel.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox