英特尔芯片漏洞 linux,【图片】Linux 4.20内核修复了幽灵V2漏洞,但英特尔CPU会损失50%性能【linux游戏吧】_百度贴吧...

该楼层疑似违规已被系统折叠 隐藏此楼查看此楼

git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/log/

Merge branch 'x86-pti-for-linus'

Pull STIBP fallout fixes from Thomas Gleixner:

"The performance destruction department finally got it's act together

and came up with a cure for the STIPB regression:

- Provide a command line option to control the spectre v2 user space

mitigations. Default is either seccomp or prctl (if seccomp is

disabled in Kconfig). prctl allows mitigation opt-in, seccomp

enables the migitation for sandboxed processes.

- Rework the code to handle the conditional STIBP/IBPB control and

remove the now unused ptrace_may_access_sched() optimization

attempt

- Disable STIBP automatically when SMT is disabled

- Optimize the switch_to() logic to avoid MSR writes and invocations

of __switch_to_xtra().

- Make the asynchronous speculation TIF updates synchronous to

prevent stale mitigation state.

As a general cleanup this also makes retpoline directly depend on

compiler support and removes the 'minimal retpoline' option which just

pretended to provide some form of security while providing none"

  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值