From: Jason Wang <[email protected]>
Date: Tue, 30 Oct 2018 14:10:49 +0800

> The idx in vhost_vring_ioctl() was controlled by userspace, hence a
> potential exploitation of the Spectre variant 1 vulnerability.
> 
> Fixing this by sanitizing idx before using it to index d->vqs.
> 
> Cc: Michael S. Tsirkin <[email protected]>
> Cc: Josh Poimboeuf <[email protected]>
> Cc: Andrea Arcangeli <[email protected]>
> Signed-off-by: Jason Wang <[email protected]>

Applied and queued up for -stable.
_______________________________________________
Virtualization mailing list
[email protected]
https://lists.linuxfoundation.org/mailman/listinfo/virtualization

Reply via email to