pve-qemu/debian/patches/extra
Oguz Bektas 9be61fa466 add fixes for intel MDS CVEs
fixes for:
* CVE-2018-12126
* CVE-2018-12127
* CVE-2018-12130
* CVE-2019-11091

adds the md-clear cpuflag.

Not included by default in any Intel CPU model.

Must be explicitly turned on for all Intel CPU models.

Requires the host CPU microcode to support this feature before it
can be used for guest CPUs.

Signed-off-by: Oguz Bektas <o.bektas@proxmox.com>
2019-06-05 14:21:44 +02:00
..
0001-monitor-guard-iothread-access-by-mon-use_io_thread.patch bump version to 3.0.1-1 2019-04-19 10:32:03 +02:00
0002-monitor-delay-monitor-iothread-creation.patch bump version to 3.0.1-1 2019-04-19 10:32:03 +02:00
0003-kvm-Add-support-to-KVM_GET_MSR_FEATURE_INDEX_LIST-an.patch add fixes for intel MDS CVEs 2019-06-05 14:21:44 +02:00
0004-i386-Add-CPUID-bit-and-feature-words-for-IA32_ARCH_C.patch add fixes for intel MDS CVEs 2019-06-05 14:21:44 +02:00
0005-i386-Add-new-MSR-indices-for-IA32_PRED_CMD-and-IA32_.patch add fixes for intel MDS CVEs 2019-06-05 14:21:44 +02:00
0006-x86-Data-structure-changes-to-support-MSR-based-feat.patch add fixes for intel MDS CVEs 2019-06-05 14:21:44 +02:00
0007-x86-define-a-new-MSR-based-feature-word-FEATURE_WORD.patch add fixes for intel MDS CVEs 2019-06-05 14:21:44 +02:00
0008-target-i386-add-MDS-NO-feature.patch add fixes for intel MDS CVEs 2019-06-05 14:21:44 +02:00
0009-target-i386-define-md-clear-bit.patch add fixes for intel MDS CVEs 2019-06-05 14:21:44 +02:00