Re: [RFC PATCH v3 00/27] KVM SGX virtualization support

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On 2/4/21 8:28 AM, Sean Christopherson wrote:
>> Do we see any security risk here?
> Not with current CPUs, which drop writes and read all ones.  If future CPUs take
> creatives liberties with the SDM, then we could have a problem, but that's why
> Dave is trying to get stronger guarantees into the SDM.

I really don't like the idea of the abort page being used by code that
doesn't know what it's dealing with.  It just seems like trouble (aka.
security risk) waiting to happen.



[Index of Archives]     [KVM ARM]     [KVM ia64]     [KVM ppc]     [Virtualization Tools]     [Spice Development]     [Libvirt]     [Libvirt Users]     [Linux USB Devel]     [Linux Audio Users]     [Yosemite Questions]     [Linux Kernel]     [Linux SCSI]     [XFree86]

  Powered by Linux