diff options
author | Paolo Bonzini <pbonzini@redhat.com> | 2015-11-10 09:14:39 +0100 |
---|---|---|
committer | Greg Kroah-Hartman <gregkh@linuxfoundation.org> | 2016-01-31 11:23:31 -0800 |
commit | 19eaffefc4b03d92e0adfd1870b10b9539916106 (patch) | |
tree | 648a1218a04409e7ec0ae8f5d1449cc8c8d02a61 /arch/x86/kvm/irq.h | |
parent | 03e572f3dda7f5790930df631a3f013f4100558b (diff) |
KVM: svm: unconditionally intercept #DB
commit cbdb967af3d54993f5814f1cee0ed311a055377d upstream.
This is needed to avoid the possibility that the guest triggers
an infinite stream of #DB exceptions (CVE-2015-8104).
VMX is not affected: because it does not save DR6 in the VMCS,
it already intercepts #DB unconditionally.
Reported-by: Jan Beulich <jbeulich@suse.com>
Signed-off-by: Paolo Bonzini <pbonzini@redhat.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
Diffstat (limited to 'arch/x86/kvm/irq.h')
0 files changed, 0 insertions, 0 deletions