[SRU][J][PATCH 0/2] sev-guest vulnerability fix + follow-up

Khalid Elmously khalid.elmously at canonical.com
Thu Mar 30 04:56:26 UTC 2023


BugLink: https://bugs.launchpad.net/bugs/2013198

"virt/sev-guest: Prevent IV reuse in the SNP guest driver" is from upstream 5.19 and it fixes a vulnerability in SEV-SNP but it also introduced its own problem which was fixed in "virt/coco/sev-guest: Add throttling awareness" which is being currently merged upstream in 6.3

Separate patch(es) will be sent for Kinetic and possibly Lunar if needed.


Testing: Boot tested the patches in a SEV environment.


Dionna Glaze (1):
  virt/coco/sev-guest: Add throttling awareness

Peter Gonda (1):
  virt/sev-guest: Prevent IV reuse in the SNP guest driver

 arch/x86/include/asm/sev-common.h     |  3 +-
 arch/x86/kernel/sev.c                 |  4 +-
 drivers/virt/coco/sevguest/sevguest.c | 95 ++++++++++++++++++++++-----
 3 files changed, 83 insertions(+), 19 deletions(-)

-- 
2.34.1




More information about the kernel-team mailing list