On Sat, 2017-05-06 at 11:04 +0200, Paolo Bonzini wrote: > > > On 05/05/2017 20:17, Ricardo Neri wrote: > > User-Mode Instruction Prevention is a security feature present in > new > > Intel processors that, when set, prevents the execution of a subset > of > > instructions if such instructions are executed in user mode (CPL > > 0). > > Attempting to execute such instructions causes a general protection > > exception. > > > > The subset of instructions comprises: > > > > * SGDT - Store Global Descriptor Table > > * SIDT - Store Interrupt Descriptor Table > > * SLDT - Store Local Descriptor Table > > * SMSW - Store Machine Status Word > > * STR - Store Task Register > > > > This feature is also added to the list of disabled-features to allow > > a cleaner handling of build-time configuration. > > > > Cc: Andy Lutomirski <l...@kernel.org> > > Cc: Andrew Morton <a...@linux-foundation.org> > > Cc: H. Peter Anvin <h...@zytor.com> > > Cc: Borislav Petkov <b...@suse.de> > > Cc: Brian Gerst <brge...@gmail.com> > > Cc: Chen Yucong <sla...@gmail.com> > > Cc: Chris Metcalf <cmetc...@mellanox.com> > > Cc: Dave Hansen <dave.han...@linux.intel.com> > > Cc: Fenghua Yu <fenghua...@intel.com> > > Cc: Huang Rui <ray.hu...@amd.com> > > Cc: Jiri Slaby <jsl...@suse.cz> > > Cc: Jonathan Corbet <cor...@lwn.net> > > Cc: Michael S. Tsirkin <m...@redhat.com> > > Cc: Paul Gortmaker <paul.gortma...@windriver.com> > > Cc: Peter Zijlstra <pet...@infradead.org> > > Cc: Ravi V. Shankar <ravi.v.shan...@intel.com> > > Cc: Shuah Khan <sh...@kernel.org> > > Cc: Vlastimil Babka <vba...@suse.cz> > > Cc: Tony Luck <tony.l...@intel.com> > > Cc: Paolo Bonzini <pbonz...@redhat.com> > > Cc: Liang Z. Li <liang.z...@intel.com> > > Cc: Alexandre Julliard <julli...@winehq.org> > > Cc: Stas Sergeev <s...@list.ru> > > Cc: x...@kernel.org > > Cc: linux-ms...@vger.kernel.org > > > > Signed-off-by: Ricardo Neri <ricardo.neri-calde...@linux.intel.com> > > Would it be possible to have this patch in a topic branch for KVM's > consumption? > I have put a branch here with this single patch:
https://github.com/ricardon/tip.git rneri/umip_for_kvm This is based on Linux v4.11. Please let me know if this works for your or you'd prefer it to be based on a different branch/commit/repo. Thanks and BR, Ricardo