2018-09-17 14:40:02 |
bugproxy |
bug |
|
|
added bug |
2018-09-17 14:40:04 |
bugproxy |
tags |
|
architecture-ppc64le bugnameltc-171449 severity-medium targetmilestone-inin1804 |
|
2018-09-17 14:40:05 |
bugproxy |
ubuntu: assignee |
|
Ubuntu on IBM Power Systems Bug Triage (ubuntu-power-triage) |
|
2018-09-17 14:40:09 |
bugproxy |
affects |
ubuntu |
kernel-package (Ubuntu) |
|
2018-09-17 14:51:56 |
Frank Heimes |
affects |
kernel-package (Ubuntu) |
linux (Ubuntu) |
|
2018-09-17 14:52:15 |
Frank Heimes |
bug task added |
|
ubuntu-power-systems |
|
2018-09-17 14:52:26 |
Frank Heimes |
ubuntu-power-systems: importance |
Undecided |
Medium |
|
2018-09-17 14:52:42 |
Frank Heimes |
ubuntu-power-systems: assignee |
|
Canonical Kernel Team (canonical-kernel-team) |
|
2018-09-17 15:25:34 |
Joseph Salisbury |
linux (Ubuntu): importance |
Undecided |
Medium |
|
2018-09-17 15:25:41 |
Joseph Salisbury |
linux (Ubuntu): status |
New |
In Progress |
|
2018-09-17 15:25:45 |
Joseph Salisbury |
linux (Ubuntu): assignee |
Ubuntu on IBM Power Systems Bug Triage (ubuntu-power-triage) |
Joseph Salisbury (jsalisbury) |
|
2018-09-17 15:25:58 |
Joseph Salisbury |
nominated for series |
|
Ubuntu Bionic |
|
2018-09-17 15:25:58 |
Joseph Salisbury |
bug task added |
|
linux (Ubuntu Bionic) |
|
2018-09-17 15:26:08 |
Joseph Salisbury |
linux (Ubuntu Bionic): status |
New |
In Progress |
|
2018-09-17 15:26:11 |
Joseph Salisbury |
linux (Ubuntu Bionic): importance |
Undecided |
Medium |
|
2018-09-17 15:26:15 |
Joseph Salisbury |
linux (Ubuntu Bionic): assignee |
|
Joseph Salisbury (jsalisbury) |
|
2018-09-18 07:37:00 |
Frank Heimes |
ubuntu-power-systems: status |
New |
In Progress |
|
2018-10-11 20:18:15 |
Joseph Salisbury |
description |
== Comment: #0 - Leonardo Augusto Guimaraes Garcia <lagarcia@br.ibm.com> - 2018-09-13 07:12:48 ==
+++ This bug was initially created as a clone of Bug #171443 +++
Please, add the following patch:
http://patchwork.ozlabs.org/patch/968786/
which adds a mode where all vCPUs on a core must be the same VM on POWER8 and POWER9.
This is intended for use in security-conscious settings where users are concerned about possible side-channel attacks between threads which could perhaps enable one VM to attack another VM on the same core, or the host. |
== SRU Justification ==
This patch has been requested by IBM. It provides a mode where all vCPUs
on a core must be the same VM. This is intended for use in
security-conscious settings where users are concerned about possible
side-channel attacks between threads which could perhaps enable one VM
to attack another VM on the same core, or the host.
== Fix ==
linux-next commit:
aa2278644ae5 ("KVM: PPC: Book3S HV: Provide mode where all vCPUs on a core must be the same VM")
== Regression Potential ==
Low. Changes limited to powerpc.
== Test Case ==
A test kernel was built with this patch and tested by the original bug reporter.
The bug reporter states the test kernel resolved the bug.
== Comment: #0 - Leonardo Augusto Guimaraes Garcia <lagarcia@br.ibm.com> - 2018-09-13 07:12:48 ==
+++ This bug was initially created as a clone of Bug #171443 +++
Please, add the following patch:
http://patchwork.ozlabs.org/patch/968786/
which adds a mode where all vCPUs on a core must be the same VM on POWER8 and POWER9.
This is intended for use in security-conscious settings where users are concerned about possible side-channel attacks between threads which could perhaps enable one VM to attack another VM on the same core, or the host. |
|
2018-10-11 20:18:23 |
Joseph Salisbury |
nominated for series |
|
Ubuntu Cosmic |
|
2018-10-11 20:18:23 |
Joseph Salisbury |
bug task added |
|
linux (Ubuntu Cosmic) |
|
2018-10-23 14:48:05 |
Kleber Sacilotto de Souza |
linux (Ubuntu Bionic): status |
In Progress |
Fix Committed |
|
2018-10-24 13:35:03 |
Brad Figg |
tags |
architecture-ppc64le bugnameltc-171449 severity-medium targetmilestone-inin1804 |
architecture-ppc64le bugnameltc-171449 severity-medium targetmilestone-inin1804 verification-needed-bionic |
|
2018-10-24 14:50:11 |
Brad Figg |
tags |
architecture-ppc64le bugnameltc-171449 severity-medium targetmilestone-inin1804 verification-needed-bionic |
architecture-ppc64le bugnameltc-171449 severity-medium targetmilestone-inin1804 verification-needed-bionic verification-needed-cosmic |
|
2018-11-07 16:22:39 |
Kleber Sacilotto de Souza |
linux (Ubuntu Cosmic): status |
In Progress |
Fix Committed |
|
2018-11-13 07:47:18 |
Andrew Cloke |
tags |
architecture-ppc64le bugnameltc-171449 severity-medium targetmilestone-inin1804 verification-needed-bionic verification-needed-cosmic |
architecture-ppc64le bugnameltc-171449 severity-medium targetmilestone-inin1804 verification-done-bionic verification-needed-cosmic |
|
2018-11-13 18:51:26 |
Launchpad Janitor |
linux (Ubuntu Bionic): status |
Fix Committed |
Fix Released |
|
2018-11-13 18:51:26 |
Launchpad Janitor |
cve linked |
|
2017-13168 |
|
2018-11-13 18:51:26 |
Launchpad Janitor |
cve linked |
|
2018-15471 |
|
2018-11-13 18:51:26 |
Launchpad Janitor |
cve linked |
|
2018-16658 |
|
2018-11-13 18:51:26 |
Launchpad Janitor |
cve linked |
|
2018-9363 |
|
2018-11-13 19:09:36 |
Launchpad Janitor |
linux (Ubuntu Cosmic): status |
Fix Committed |
Fix Released |
|
2018-11-14 16:06:55 |
Joseph Salisbury |
linux (Ubuntu): status |
In Progress |
Fix Released |
|
2018-11-14 16:33:07 |
Andrew Cloke |
ubuntu-power-systems: status |
In Progress |
Fix Released |
|
2018-11-21 16:26:02 |
Dimitri John Ledkov |
tags |
architecture-ppc64le bugnameltc-171449 severity-medium targetmilestone-inin1804 verification-done-bionic verification-needed-cosmic |
architecture-ppc64le bugnameltc-171449 severity-medium targetmilestone-inin1804 verification-done-bionic verification-done-cosmic |
|