Hi
While I realize there are much of changes going on unstable, I still
would like to upload linux version (6.7.9-2) (yes no new upstream
version) mitigating the Register File Data Sampling (RFDS)
vulnerability (CVE-2023-28746).
This goes along with a intel-microcode update which already was
uploaded to unstable:
https://tracker.debian.org/news/1511674/accepted-intel-microcode-3202403121-source-into-unstable/
* [x86] Mitigate Register File Data Sampling (RFDS) vulnerability
(CVE-2023-28746):
- x86/mmio: Disable KVM mitigation when X86_FEATURE_CLEAR_CPU_BUF is set
- Documentation/hw-vuln: Add documentation for RFDS
- x86/rfds: Mitigate Register File Data Sampling (RFDS)
- KVM/x86: Export RFDS_NO and RFDS_CLEAR to guests
Regards,
Salvatore
Attachment:
signature.asc
Description: PGP signature