Re: Xen Security Advisory 360 v1 - IRQ vector leak on x86

2021-01-21 Thread Jan Beulich
On 21.01.2021 16:05, Roger Pau Monné wrote: > On Thu, Jan 21, 2021 at 03:50:55PM +0100, Jan Beulich wrote: >> On 21.01.2021 15:34, Roger Pau Monné wrote: >>> On Thu, Jan 21, 2021 at 03:20:12PM +0100, Marek Marczykowski-Górecki wrote: On Thu, Jan 21, 2021 at 02:10:48PM +, Xen.org security

Re: Xen Security Advisory 360 v1 - IRQ vector leak on x86

2021-01-21 Thread Roger Pau Monné
On Thu, Jan 21, 2021 at 03:50:55PM +0100, Jan Beulich wrote: > On 21.01.2021 15:34, Roger Pau Monné wrote: > > On Thu, Jan 21, 2021 at 03:20:12PM +0100, Marek Marczykowski-Górecki wrote: > >> On Thu, Jan 21, 2021 at 02:10:48PM +, Xen.org security team wrote: > >>> Xen

Re: Xen Security Advisory 360 v1 - IRQ vector leak on x86

2021-01-21 Thread Jan Beulich
On 21.01.2021 15:34, Roger Pau Monné wrote: > On Thu, Jan 21, 2021 at 03:20:12PM +0100, Marek Marczykowski-Górecki wrote: >> On Thu, Jan 21, 2021 at 02:10:48PM +, Xen.org security team wrote: >>> Xen Security Advisory XSA-360 >>> >>> IRQ vector leak

Re: Xen Security Advisory 360 v1 - IRQ vector leak on x86

2021-01-21 Thread Roger Pau Monné
On Thu, Jan 21, 2021 at 03:20:12PM +0100, Marek Marczykowski-Górecki wrote: > On Thu, Jan 21, 2021 at 02:10:48PM +, Xen.org security team wrote: > > Xen Security Advisory XSA-360 > > > > IRQ vector leak on x86 > > > > ISSUE DESCRIPTION > >

Re: Xen Security Advisory 360 v1 - IRQ vector leak on x86

2021-01-21 Thread Jan Beulich
On 21.01.2021 15:20, Marek Marczykowski-Górecki wrote: > On Thu, Jan 21, 2021 at 02:10:48PM +, Xen.org security team wrote: >> MITIGATION >> == >> >> Not running HVM guests with PCI pass through devices will avoid the >> vulnerability. Note that even non-malicious guests can trigger

Re: Xen Security Advisory 360 v1 - IRQ vector leak on x86

2021-01-21 Thread Marek Marczykowski-Górecki
On Thu, Jan 21, 2021 at 02:10:48PM +, Xen.org security team wrote: > Xen Security Advisory XSA-360 > > IRQ vector leak on x86 > > ISSUE DESCRIPTION > = > > A x86 HVM guest with PCI pass through devices can force the allocation > of

Xen Security Advisory 360 v1 - IRQ vector leak on x86

2021-01-21 Thread Xen . org security team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Xen Security Advisory XSA-360 IRQ vector leak on x86 ISSUE DESCRIPTION = A x86 HVM guest with PCI pass through devices can force the allocation of all IDT vectors on the system by