commit | ff002269a4ee9c769dbf9365acef633ebcbd6cbe | [log] [tgz] |
---|---|---|
author | Jason Wang <jasowang@redhat.com> | Tue Oct 30 14:10:49 2018 +0800 |
committer | David S. Miller <davem@davemloft.net> | Wed Oct 31 12:39:15 2018 -0700 |
tree | 4857add07b45c82cc591f888f6571d94a86dafb8 | |
parent | b1c234441e07da748ccded3aaa37177622d469d3 [diff] |
vhost: Fix Spectre V1 vulnerability The idx in vhost_vring_ioctl() was controlled by userspace, hence a potential exploitation of the Spectre variant 1 vulnerability. Fixing this by sanitizing idx before using it to index d->vqs. Cc: Michael S. Tsirkin <mst@redhat.com> Cc: Josh Poimboeuf <jpoimboe@redhat.com> Cc: Andrea Arcangeli <aarcange@redhat.com> Signed-off-by: Jason Wang <jasowang@redhat.com> Signed-off-by: David S. Miller <davem@davemloft.net>