From mboxrd@z Thu Jan 1 00:00:00 1970 From: Paul Durrant Subject: Re: [PATCH 5/5] xen/ARM: Restrict access to most HVM_PARAM's Date: Thu, 6 Sep 2018 10:43:30 +0000 Message-ID: <61852bbbcc1647f080e358699ccece60@AMSPEX02CL03.citrite.net> References: <1536171124-27053-1-git-send-email-andrew.cooper3@citrix.com> <1536171124-27053-6-git-send-email-andrew.cooper3@citrix.com> <7b4f42e4-69ae-08f6-989f-b8e111d51419@arm.com> <85dce382-71a1-c4f7-d6e8-2dcff06f9c04@citrix.com> Mime-Version: 1.0 Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: base64 Return-path: In-Reply-To: <85dce382-71a1-c4f7-d6e8-2dcff06f9c04@citrix.com> Content-Language: en-US List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Sender: "Xen-devel" To: Andrew Cooper , Julien Grall , Xen-devel Cc: Stefano Stabellini , Wei Liu , Jan Beulich , Roger Pau Monne List-Id: xen-devel@lists.xenproject.org PiAtLS0tLU9yaWdpbmFsIE1lc3NhZ2UtLS0tLQ0KPiBGcm9tOiBBbmRyZXcgQ29vcGVyDQo+IFNl bnQ6IDA2IFNlcHRlbWJlciAyMDE4IDExOjQwDQo+IFRvOiBKdWxpZW4gR3JhbGwgPGp1bGllbi5n cmFsbEBhcm0uY29tPjsgUGF1bCBEdXJyYW50DQo+IDxQYXVsLkR1cnJhbnRAY2l0cml4LmNvbT47 IFhlbi1kZXZlbCA8eGVuLWRldmVsQGxpc3RzLnhlbi5vcmc+DQo+IENjOiBKYW4gQmV1bGljaCA8 SkJldWxpY2hAc3VzZS5jb20+OyBXZWkgTGl1IDx3ZWkubGl1MkBjaXRyaXguY29tPjsgUm9nZXIN Cj4gUGF1IE1vbm5lIDxyb2dlci5wYXVAY2l0cml4LmNvbT47IFN0ZWZhbm8gU3RhYmVsbGluaQ0K PiA8c3N0YWJlbGxpbmlAa2VybmVsLm9yZz4NCj4gU3ViamVjdDogUmU6IFtQQVRDSCA1LzVdIHhl bi9BUk06IFJlc3RyaWN0IGFjY2VzcyB0byBtb3N0IEhWTV9QQVJBTSdzDQo+IA0KPiBPbiAwNi8w OS8xOCAxMTozNiwgSnVsaWVuIEdyYWxsIHdyb3RlOg0KPiA+IEhpIFBhdWwsDQo+ID4NCj4gPiBP biAwNi8wOS8xOCAxMDoyOSwgUGF1bCBEdXJyYW50IHdyb3RlOg0KPiA+Pj4gLS0tLS1PcmlnaW5h bCBNZXNzYWdlLS0tLS0NCj4gPj4+IEZyb206IEFuZHJldyBDb29wZXIgW21haWx0bzphbmRyZXcu Y29vcGVyM0BjaXRyaXguY29tXQ0KPiA+Pj4gU2VudDogMDUgU2VwdGVtYmVyIDIwMTggMTk6MTIN Cj4gPj4+IFRvOiBYZW4tZGV2ZWwgPHhlbi1kZXZlbEBsaXN0cy54ZW4ub3JnPg0KPiA+Pj4gQ2M6 IEFuZHJldyBDb29wZXIgPEFuZHJldy5Db29wZXIzQGNpdHJpeC5jb20+OyBKYW4gQmV1bGljaA0K PiA+Pj4gPEpCZXVsaWNoQHN1c2UuY29tPjsgV2VpIExpdSA8d2VpLmxpdTJAY2l0cml4LmNvbT47 IFJvZ2VyIFBhdSBNb25uZQ0KPiA+Pj4gPHJvZ2VyLnBhdUBjaXRyaXguY29tPjsgUGF1bCBEdXJy YW50IDxQYXVsLkR1cnJhbnRAY2l0cml4LmNvbT47DQo+IFN0ZWZhbm8NCj4gPj4+IFN0YWJlbGxp bmkgPHNzdGFiZWxsaW5pQGtlcm5lbC5vcmc+OyBKdWxpZW4gR3JhbGwNCj4gPj4+IDxqdWxpZW4u Z3JhbGxAYXJtLmNvbT4NCj4gPj4+IFN1YmplY3Q6IFtQQVRDSCA1LzVdIHhlbi9BUk06IFJlc3Ry aWN0IGFjY2VzcyB0byBtb3N0IEhWTV9QQVJBTSdzDQo+ID4+Pg0KPiA+Pj4gQVJNIGN1cnJlbnRs eSBoYXMgbm8gcmVzdHJpY3Rpb25zIG9uIHRvb2xzdGFjayBhbmQgZ3Vlc3QgYWNjZXNzIHRvDQo+ ID4+PiB0aGUgZW50aXJlDQo+ID4+PiBIVk1fUEFSQU0gYmxvY2suwqAgQXMgdGhlIHBhZ2luZy9t b25pdG9yL3NoYXJpbmcgZmVhdHVyZXMgYXJlbid0DQo+IHVuZGVyDQo+ID4+PiBzZWN1cml0eQ0K PiA+Pj4gc3VwcG9ydCwgdGhpcyBkb2Vzbid0IG5lZWQgYW4gWFNBLg0KPiA+Pj4NCj4gPj4+IFRo ZSBDQUxMQkFDS19JUlEgYW5kIHtTVE9SRSxDT05TT0xFfV97UEZOLEVWVENITn0gZGV0YWlscw0K PiBleHBvc2VkDQo+ID4+PiByZWFkLW9ubHkgdG8NCj4gPj4+IHRoZSBndWVzdCwgd2hpbGUgdGhl ICpfUklOR19QRk4gZGV0YWlscyBhcmUgcmVzdHJpY3RlZCB0byBvbmx5DQo+ID4+PiB0b29sc3Rh Y2sNCj4gPj4+IGFjY2Vzcy7CoCBObyBvdGhlciBwYXJhbWV0ZXJzIGFyZSB1c2VkLg0KPiA+Pj4N Cj4gPj4+IFNpZ25lZC1vZmYtYnk6IEFuZHJldyBDb29wZXIgPGFuZHJldy5jb29wZXIzQGNpdHJp eC5jb20+DQo+ID4+PiAtLS0NCj4gPj4+IENDOiBKYW4gQmV1bGljaCA8SkJldWxpY2hAc3VzZS5j b20+DQo+ID4+PiBDQzogV2VpIExpdSA8d2VpLmxpdTJAY2l0cml4LmNvbT4NCj4gPj4+IENDOiBS b2dlciBQYXUgTW9ubsOpIDxyb2dlci5wYXVAY2l0cml4LmNvbT4NCj4gPj4+IENDOiBQYXVsIER1 cnJhbnQgPHBhdWwuZHVycmFudEBjaXRyaXguY29tPg0KPiA+Pj4gQ0M6IFN0ZWZhbm8gU3RhYmVs bGluaSA8c3N0YWJlbGxpbmlAa2VybmVsLm9yZz4NCj4gPj4+IENDOiBKdWxpZW4gR3JhbGwgPGp1 bGllbi5ncmFsbEBhcm0uY29tPg0KPiA+Pj4NCj4gPj4+IFRoaXMgaXMgb25seSBjb21waWxlIHRl c3RlZCwgYW5kIGJhc2VkIG9uIG15IHJlYWRpbmcgb2YgdGhlIHNvdXJjZS4NCj4gPj4+IFRoZXJl DQo+ID4+PiBtaWdodCBiZSBvdGhlciBQQVJBTVMgbmVlZGluZyBpbmNsdWRpbmcuDQo+ID4+PiAt LS0NCj4gPj4+IMKgIHhlbi9hcmNoL2FybS9odm0uYyB8IDYyDQo+ID4+PiArKysrKysrKysrKysr KysrKysrKysrKysrKysrKysrKysrKysrKysrKysrKysrKysrKystLS0NCj4gPj4+IMKgIDEgZmls ZSBjaGFuZ2VkLCA1OSBpbnNlcnRpb25zKCspLCAzIGRlbGV0aW9ucygtKQ0KPiA+Pj4NCj4gPj4+ IGRpZmYgLS1naXQgYS94ZW4vYXJjaC9hcm0vaHZtLmMgYi94ZW4vYXJjaC9hcm0vaHZtLmMNCj4g Pj4+IGluZGV4IDc2YjI3YzkuLjM1ODFiYTIgMTAwNjQ0DQo+ID4+PiAtLS0gYS94ZW4vYXJjaC9h cm0vaHZtLmMNCj4gPj4+ICsrKyBiL3hlbi9hcmNoL2FybS9odm0uYw0KPiA+Pj4gQEAgLTMxLDYg KzMxLDU3IEBADQo+ID4+Pg0KPiA+Pj4gwqAgI2luY2x1ZGUgPGFzbS9oeXBlcmNhbGwuaD4NCj4g Pj4+DQo+ID4+PiArc3RhdGljIGludCBodm1fYWxsb3dfc2V0X3BhcmFtKGNvbnN0IHN0cnVjdCBk b21haW4gKmQsIHVuc2lnbmVkIGludA0KPiA+Pj4gcGFyYW0pDQo+ID4+PiArew0KPiA+Pj4gK8Kg wqDCoCBzd2l0Y2ggKCBwYXJhbSApDQo+ID4+PiArwqDCoMKgIHsNCj4gPj4+ICvCoMKgwqDCoMKg wqDCoCAvKg0KPiA+Pj4gK8KgwqDCoMKgwqDCoMKgwqAgKiBUaGUgZm9sbG93aW5nIHBhcmFtZXRl cnMgYXJlIGludGVuZGVkIGZvciB0b29sc3RhY2sNCj4gPj4+IHVzYWdlIG9ubHkuDQo+ID4+PiAr wqDCoMKgwqDCoMKgwqDCoCAqIFRoZXkgbWF5IG5vdCBiZSBzZXQgYnkgdGhlIGRvbWFpbi4NCj4g Pj4+ICvCoMKgwqDCoMKgwqDCoMKgICovDQo+ID4+PiArwqDCoMKgIGNhc2UgSFZNX1BBUkFNX0NB TExCQUNLX0lSUToNCj4gPj4+ICvCoMKgwqAgY2FzZSBIVk1fUEFSQU1fU1RPUkVfUEZOOg0KPiA+ Pj4gK8KgwqDCoCBjYXNlIEhWTV9QQVJBTV9TVE9SRV9FVlRDSE46DQo+ID4+PiArwqDCoMKgIGNh c2UgSFZNX1BBUkFNX0NPTlNPTEVfUEZOOg0KPiA+Pj4gK8KgwqDCoCBjYXNlIEhWTV9QQVJBTV9D T05TT0xFX0VWVENITjoNCj4gPj4NCj4gPj4gUHJvYmFibHkgc2hvdWxkIHJlbW92ZSB0aGUgRVZU Q0hOIHBhcmFtcyBmcm9tIHRoaXMgbGlzdCBhZnRlciBmaXhpbmcNCj4gPj4gcGF0Y2ggIzMuDQo+ ID4+DQo+ID4+PiArwqDCoMKgIGNhc2UgSFZNX1BBUkFNX1BBR0lOR19SSU5HX1BGTjoNCj4gPj4+ ICvCoMKgwqAgY2FzZSBIVk1fUEFSQU1fTU9OSVRPUl9SSU5HX1BGTjoNCj4gPj4+ICvCoMKgwqAg Y2FzZSBIVk1fUEFSQU1fU0hBUklOR19SSU5HX1BGTjoNCj4gPj4+ICvCoMKgwqDCoMKgwqDCoCBy ZXR1cm4gZCA9PSBjdXJyZW50LT5kb21haW4gPyAtRVBFUk0gOiAwOw0KPiA+Pj4gKw0KPiA+Pj4g K8KgwqDCoMKgwqDCoMKgIC8qIFdyaXRlYWJsZSBvbmx5IGJ5IFhlbiwgaG9sZSwgZGVwcmVjYXRl ZCwgb3INCj4gPj4+IG91dC1vZi1yYW5nZS4gKi8NCj4gPj4+ICvCoMKgwqAgZGVmYXVsdDoNCj4g Pj4+ICvCoMKgwqDCoMKgwqDCoCByZXR1cm4gLUVJTlZBTDsNCj4gPj4+ICvCoMKgwqAgfQ0KPiA+ Pj4gK30NCj4gPj4+ICsNCj4gPj4+ICtzdGF0aWMgaW50IGh2bV9hbGxvd19nZXRfcGFyYW0oY29u c3Qgc3RydWN0IGRvbWFpbiAqZCwgdW5zaWduZWQgaW50DQo+ID4+PiBwYXJhbSkNCj4gPj4+ICt7 DQo+ID4+PiArwqDCoMKgIHN3aXRjaCAoIHBhcmFtICkNCj4gPj4+ICvCoMKgwqAgew0KPiA+Pj4g K8KgwqDCoMKgwqDCoMKgIC8qIFRoZSBmb2xsb3dpbmcgcGFyYW1ldGVycyBjYW4gYmUgcmVhZCBi eSB0aGUgZ3Vlc3QgYW5kDQo+ID4+PiB0b29sc3RhY2suICovDQo+ID4+PiArwqDCoMKgIGNhc2Ug SFZNX1BBUkFNX0NBTExCQUNLX0lSUToNCj4gPj4+ICvCoMKgwqAgY2FzZSBIVk1fUEFSQU1fU1RP UkVfUEZOOg0KPiA+Pj4gK8KgwqDCoCBjYXNlIEhWTV9QQVJBTV9TVE9SRV9FVlRDSE46DQo+ID4+ PiArwqDCoMKgIGNhc2UgSFZNX1BBUkFNX0NPTlNPTEVfUEZOOg0KPiA+Pj4gK8KgwqDCoCBjYXNl IEhWTV9QQVJBTV9DT05TT0xFX0VWVENITjoNCj4gPj4+ICvCoMKgwqDCoMKgwqDCoCByZXR1cm4g MDsNCj4gPj4+ICsNCj4gPj4+ICvCoMKgwqDCoMKgwqDCoCAvKg0KPiA+Pj4gK8KgwqDCoMKgwqDC oMKgwqAgKiBUaGUgZm9sbG93aW5nIHBhcmFtZXRlcnMgYXJlIGludGVuZGVkIGZvciB0b29sc3Rh Y2sNCj4gPj4+IHVzYWdlIG9ubHkuDQo+ID4+PiArwqDCoMKgwqDCoMKgwqDCoCAqIFRoZXkgbWF5 IG5vdCBiZSByZWFkIGJ5IHRoZSBkb21haW4uDQo+ID4+PiArwqDCoMKgwqDCoMKgwqDCoCAqLw0K PiA+Pj4gK8KgwqDCoCBjYXNlIEhWTV9QQVJBTV9QQUdJTkdfUklOR19QRk46DQo+ID4+PiArwqDC oMKgIGNhc2UgSFZNX1BBUkFNX01PTklUT1JfUklOR19QRk46DQo+ID4+PiArwqDCoMKgIGNhc2Ug SFZNX1BBUkFNX1NIQVJJTkdfUklOR19QRk46DQo+ID4+PiArwqDCoMKgwqDCoMKgwqAgcmV0dXJu IGQgPT0gY3VycmVudC0+ZG9tYWluID8gLUVQRVJNIDogMDsNCj4gPj4+ICsNCj4gPj4+ICvCoMKg wqDCoMKgwqDCoCAvKiBIb2xlLCBkZXByZWNhdGVkLCBvciBvdXQtb2YtcmFuZ2UuICovDQo+ID4+ PiArwqDCoMKgIGRlZmF1bHQ6DQo+ID4+PiArwqDCoMKgwqDCoMKgwqAgcmV0dXJuIC1FSU5WQUw7 DQo+ID4+PiArwqDCoMKgIH0NCj4gPj4+ICt9DQo+ID4+PiArDQo+ID4+PiDCoCBsb25nIGRvX2h2 bV9vcCh1bnNpZ25lZCBsb25nIG9wLA0KPiBYRU5fR1VFU1RfSEFORExFX1BBUkFNKHZvaWQpDQo+ ID4+PiBhcmcpDQo+ID4+PiDCoCB7DQo+ID4+PiDCoMKgwqDCoMKgIGxvbmcgcmMgPSAwOw0KPiA+ Pj4gQEAgLTQ2LDkgKzk3LDYgQEAgbG9uZyBkb19odm1fb3AodW5zaWduZWQgbG9uZyBvcCwNCj4g Pj4+IFhFTl9HVUVTVF9IQU5ETEVfUEFSQU0odm9pZCkgYXJnKQ0KPiA+Pj4gwqDCoMKgwqDCoMKg wqDCoMKgIGlmICggY29weV9mcm9tX2d1ZXN0KCZhLCBhcmcsIDEpICkNCj4gPj4+IMKgwqDCoMKg wqDCoMKgwqDCoMKgwqDCoMKgIHJldHVybiAtRUZBVUxUOw0KPiA+Pj4NCj4gPj4+IC3CoMKgwqDC oMKgwqDCoCBpZiAoIGEuaW5kZXggPj0gSFZNX05SX1BBUkFNUyApDQo+ID4+PiAtwqDCoMKgwqDC oMKgwqDCoMKgwqDCoCByZXR1cm4gLUVJTlZBTDsNCj4gPj4+IC0NCj4gPj4NCj4gPj4gQVNTRVJU IGhlcmUuDQo+ID4NCj4gPiBJIGRvbid0IHRoaW5rIHRoaXMgd291bGQgYmUgY29ycmVjdC4gVGhp cyBpcyBhbiBpbnB1dCBmcm9tIHRoZSBndWVzdCwNCj4gPiBzbyBpZiB5b3UgZG8gZnV6emluZyB5 b3Ugd2lsbCBlbmQgdXAgdG8gZ2V0IGFuIGh5cGVydmlzb3IgY3Jhc2ggcmF0aGVyDQo+ID4gdGhh biByZXR1cm5pbmcgYW4gZXJyb3IuDQo+ID4NCj4gPiBBIHBvdGVudGlhbCBwbGFjZSBmb3IgYW4g QVNTRVJUIHdvdWxkIGJlIGp1c3QgYmVmb3JlIGFjY2Vzc2luZw0KPiA+IGh2bS5wYXJhbXMuIEJ1 dCB0aGVuLCB0ZWNobmljYWxseSB0aGUgaW5kZXggc2hvdWxkIGhhdmUgYmVlbiBzYW5pdGl6ZWQN Cj4gPiBieSBodm1fYWxsb3dfe2dldCxzZXR9X3BhcmFtLg0KPiANCj4gWWVhaCAtIGFjcm9zcyBh bGwgb2YgdGhlc2UgQVNTRVJUKCkgcmVxdWVzdHMgLSB1c2luZyBhbiBhc3NlcnQgZm9yIGENCj4g Ym91bmRhcnkgY2hlY2sgZG9lc24ndCBkbyBhbnl0aGluZyBpbiB0aGUgY2FzZSB3aGVyZSBpdCBt YXR0ZXJzIG1vc3QsDQo+IGFuZCBpbiB0aGlzIGNhc2UsIEp1bGllbiBpcyBjb3JyZWN0IHRoYXQg aXQgaXMgYSBmdWxseSBndWVzdC1jb250cm9sbGVkDQo+IG51bWJlciBhdCB0aGlzIHBvaW50Lg0K PiANCg0KSSdtIGp1c3QgdW5lYXN5IGFib3V0IHJlbW92aW5nIGEgYm91bmRzIGNoZWNrLiBJZiBh IGxvZ2ljIGVycm9yIGNyZWVwcyBpbnRvIGFuICdhbGxvdycgZnVuY3Rpb24gaW4gZnV0dXJlIHRo ZW4gd2UnZCBoYXZlIG5vIHByb3RlY3Rpb24uIEFuIEFTU0VSVCB3b3VsZCBhdCBsZWFzdCBtYWtl IHN1Y2ggYSBsb2dpYyBlcnJvciBvYnZpb3VzLg0KDQogIFBhdWwNCg0KPiB+QW5kcmV3DQpfX19f X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fXwpYZW4tZGV2ZWwgbWFp bGluZyBsaXN0Clhlbi1kZXZlbEBsaXN0cy54ZW5wcm9qZWN0Lm9yZwpodHRwczovL2xpc3RzLnhl bnByb2plY3Qub3JnL21haWxtYW4vbGlzdGluZm8veGVuLWRldmVs