On Wed, Dec 11, 2019 at 12:49 PM Marios Pomonis <pomonis@xxxxxxxxxx> wrote: > > This fixes a Spectre-v1/L1TF vulnerability in set_msr_mce() and > get_msr_mce(). > Both functions contain index computations based on the > (attacker-controlled) MSR number. > > Fixes: commit 890ca9aefa78 ("KVM: Add MCE support") > > Signed-off-by: Nick Finco <nifi@xxxxxxxxxx> > Signed-off-by: Marios Pomonis <pomonis@xxxxxxxxxx> > Reviewed-by: Andrew Honig <ahonig@xxxxxxxxxx> > Cc: stable@xxxxxxxxxxxxxxx Reviewed-by: Jim Mattson <jmattson@xxxxxxxxxx>