1. 14 Jun, 2023 1 commit
    • Mostafa Saleh's avatar
      KVM: arm64: Use different pointer authentication keys for pKVM · 8c15c2a0
      Mostafa Saleh authored
      When the use of pointer authentication is enabled in the kernel it
      applies to both the kernel itself as well as KVM's nVHE hypervisor. The
      same keys are used for both the kernel and the nVHE hypervisor, which is
      less than desirable for pKVM as the host is not trusted at runtime.
      
      Naturally, the fix is to use a different set of keys for the hypervisor
      when running in protected mode. Have the host generate a new set of keys
      for the hypervisor before deprivileging the kernel. While there might be
      other sources of random directly available at EL2, this keeps the
      implementation simple, and the host is trusted anyways until it is
      deprivileged.
      
      Since the host and hypervisor no longer share a set of pointer
      authentication keys, start context switching them on the host entry/exit
      path exactly as we do for guest entry/exit. There is no need to handle
      CPU migration as the nVHE code is not migratable in the first place.
      Signed-off-by: default avatarMostafa Saleh <smostafa@google.com>
      Link: https://lore.kernel.org/r/20230614122600.2098901-1-smostafa@google.comSigned-off-by: default avatarOliver Upton <oliver.upton@linux.dev>
      8c15c2a0
  2. 13 Jun, 2023 1 commit
  3. 30 May, 2023 1 commit
    • Mostafa Saleh's avatar
      KVM: arm64: Use BTI for nvhe · b53d4a27
      Mostafa Saleh authored
      CONFIG_ARM64_BTI_KERNEL compiles the kernel to support ARMv8.5-BTI.
      However, the nvhe code doesn't make use of it as it doesn't map any
      pages with Guarded Page(GP) bit.
      
      kvm pgtable code is modified to map executable pages with GP bit
      if BTI is enabled for the kernel.
      
      At hyp init, SCTLR_EL2.BT is set to 1 to match EL1 configuration
      (SCTLR_EL1.BT1) set in bti_enable().
      
      One difference between kernel and nvhe code, is that the kernel maps
      .text with GP while nvhe maps all the executable pages, this makes
      nvhe code need to deal with special initialization code coming from
      other executable sections (.idmap.text).
      For this we need to add bti instruction at the beginning of
      __kvm_handle_stub_hvc as it can be called by  __host_hvc through
      branch instruction(br) and unlike SYM_FUNC_START, SYM_CODE_START
      doesn’t add bti instruction at the beginning, and it can’t be modified
      to add it as it is used with vector tables.
      Another solution which is more intrusive is to convert
      __kvm_handle_stub_hvc to a function and inject “bti jc” instead of
      “bti c” in SYM_FUNC_START
      Signed-off-by: default avatarMostafa Saleh <smostafa@google.com>
      Link: https://lore.kernel.org/r/20230530150845.2856828-1-smostafa@google.comSigned-off-by: default avatarOliver Upton <oliver.upton@linux.dev>
      b53d4a27
  4. 21 May, 2023 1 commit
  5. 14 May, 2023 13 commits
  6. 13 May, 2023 17 commits
  7. 12 May, 2023 6 commits
    • Borislav Petkov (AMD)'s avatar
      x86/retbleed: Fix return thunk alignment · 9a48d604
      Borislav Petkov (AMD) authored
      SYM_FUNC_START_LOCAL_NOALIGN() adds an endbr leading to this layout
      (leaving only the last 2 bytes of the address):
      
        3bff <zen_untrain_ret>:
        3bff:       f3 0f 1e fa             endbr64
        3c03:       f6                      test   $0xcc,%bl
      
        3c04 <__x86_return_thunk>:
        3c04:       c3                      ret
        3c05:       cc                      int3
        3c06:       0f ae e8                lfence
      
      However, "the RET at __x86_return_thunk must be on a 64 byte boundary,
      for alignment within the BTB."
      
      Use SYM_START instead.
      Signed-off-by: default avatarBorislav Petkov (AMD) <bp@alien8.de>
      Reviewed-by: default avatarThomas Gleixner <tglx@linutronix.de>
      Cc: <stable@kernel.org>
      Signed-off-by: default avatarLinus Torvalds <torvalds@linux-foundation.org>
      9a48d604
    • Linus Torvalds's avatar
      Merge tag 'for-6.4-rc1-tag' of git://git.kernel.org/pub/scm/linux/kernel/git/kdave/linux · 76c7f887
      Linus Torvalds authored
      Pull more btrfs fixes from David Sterba:
      
       - fix incorrect number of bitmap entries for space cache if loading is
         interrupted by some error
      
       - fix backref walking, this breaks a mode of LOGICAL_INO_V2 ioctl that
         is used in deduplication tools
      
       - zoned mode fixes:
            - properly finish zone reserved for relocation
            - correctly calculate super block zone end on ZNS
            - properly initialize new extent buffer for redirty
      
       - make mount option clear_cache work with block-group-tree, to rebuild
         free-space-tree instead of temporarily disabling it that would lead
         to a forced read-only mount
      
       - fix alignment check for offset when printing extent item
      
      * tag 'for-6.4-rc1-tag' of git://git.kernel.org/pub/scm/linux/kernel/git/kdave/linux:
        btrfs: make clear_cache mount option to rebuild FST without disabling it
        btrfs: zero the buffer before marking it dirty in btrfs_redirty_list_add
        btrfs: zoned: fix full zone super block reading on ZNS
        btrfs: zoned: zone finish data relocation BG with last IO
        btrfs: fix backref walking not returning all inode refs
        btrfs: fix space cache inconsistency after error loading it from disk
        btrfs: print-tree: parent bytenr must be aligned to sector size
      76c7f887
    • Linus Torvalds's avatar
      Merge tag '6.4-rc1-smb3-client-fixes' of git://git.samba.org/sfrench/cifs-2.6 · fd88f147
      Linus Torvalds authored
      Pull cifs client fixes from Steve French:
      
       - fix for copy_file_range bug for very large files that are multiples
         of rsize
      
       - do not ignore "isolated transport" flag if set on share
      
       - set rasize default better
      
       - three fixes related to shutdown and freezing (fixes 4 xfstests, and
         closes deferred handles faster in some places that were missed)
      
      * tag '6.4-rc1-smb3-client-fixes' of git://git.samba.org/sfrench/cifs-2.6:
        cifs: release leases for deferred close handles when freezing
        smb3: fix problem remounting a share after shutdown
        SMB3: force unmount was failing to close deferred close files
        smb3: improve parallel reads of large files
        do not reuse connection if share marked as isolated
        cifs: fix pcchunk length type in smb2_copychunk_range
      fd88f147
    • Linus Torvalds's avatar
      Merge tag 'vfs/v6.4-rc1/pipe' of gitolite.kernel.org:pub/scm/linux/kernel/git/vfs/vfs · df8c2d13
      Linus Torvalds authored
      Pull vfs fix from Christian Brauner:
       "During the pipe nonblock rework the check for both O_NONBLOCK and
        IOCB_NOWAIT was dropped. Both checks need to be performed to ensure
        that files without O_NONBLOCK but IOCB_NOWAIT don't block when writing
        to or reading from a pipe.
      
        This just contains the fix adding the check for IOCB_NOWAIT back in"
      
      * tag 'vfs/v6.4-rc1/pipe' of gitolite.kernel.org:pub/scm/linux/kernel/git/vfs/vfs:
        pipe: check for IOCB_NOWAIT alongside O_NONBLOCK
      df8c2d13
    • Linus Torvalds's avatar
      Merge tag 'io_uring-6.4-2023-05-12' of git://git.kernel.dk/linux · 584dc5db
      Linus Torvalds authored
      Pull io_uring fix from Jens Axboe:
       "Just a single fix making io_uring_sqe_cmd() available regardless of
        CONFIG_IO_URING, fixing a regression introduced during the merge
        window if nvme was selected but io_uring was not"
      
      * tag 'io_uring-6.4-2023-05-12' of git://git.kernel.dk/linux:
        io_uring: make io_uring_sqe_cmd() unconditionally available
      584dc5db
    • Linus Torvalds's avatar
      Merge tag 'riscv-for-linus-6.4-rc2' of git://git.kernel.org/pub/scm/linux/kernel/git/riscv/linux · ed6a75e3
      Linus Torvalds authored
      Pull RISC-V fix from Palmer Dabbelt:
       "Just a single fix this week for a build issue. That'd usually be a
        good sign, but we've started to get some reports of boot failures on
        some hardware/bootloader configurations. Nothing concrete yet, but
        I've got a funny feeling that's where much of the bug hunting is going
        right now.
      
        Nothing's reproducing on my end, though, and this fixes some pretty
        concrete issues so I figured there's no reason to delay it:
      
         - a fix to the linker script to avoid orpahaned sections in
           kernel/pi"
      
      * tag 'riscv-for-linus-6.4-rc2' of git://git.kernel.org/pub/scm/linux/kernel/git/riscv/linux:
        riscv: Fix orphan section warnings caused by kernel/pi
      ed6a75e3