On 27/04/2018 17:19, Jim Mattson wrote: > > If the default treatment of SMIs and SMM (see Section 34.14) is > active, the VMX-preemption timer counts across an SMI to VMX non-root > operation, subsequent execution in SMM, and the return from SMM via > the RSM instruction. However, the timer can cause a VM exit only from > VMX non-root operation. If the timer expires during SMI, in SMM, or > during RSM, a timer-induced VM exit occurs immediately after RSM with > its normal priority unless it is blocked based on activity state > (Section 25.2). > > So, there's no loophole here that allows us to reset the VMX > preemption timer when restoring nested state. Or when an SMI occurs. So the expiration TSC of the preemption timer should be stored into an "artificial" field of the vmcs12 at vmentry time and later reused. vmx->nested.smm.guest_node should also be saved... Paolo > As a follow-on change, we should probably fix this.