Received: by 2002:ac0:a582:0:0:0:0:0 with SMTP id m2-v6csp37259imm; Fri, 19 Oct 2018 17:00:53 -0700 (PDT) X-Google-Smtp-Source: ACcGV60sQPWPxh8vpUWP1l1il87COFdhb2PvtCLEB7ITrOkbXh5S00DM4eArRv0KMyO8ue8tAx8Y X-Received: by 2002:a17:902:c01:: with SMTP id 1-v6mr23517768pls.233.1539993653393; Fri, 19 Oct 2018 17:00:53 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1539993653; cv=none; d=google.com; s=arc-20160816; b=SjX+8J3QORIxeavtfQBF6+TYQPjbkAgz9NPi+9m8TkHFrQIX+mu8vxghHf3qVCr0g2 cIkqLsxcgW4MNycUBRFsKdyM2Qc/8voD4YTqIk6cvhaS6M+I6i9Gu0rwf1Bc2qZrcnmR eDaSTurmbwa41G1BlAS1HxvDZ0uVHFCtGFi7CrcURrtsI/avOfGbNAsv1AtX1YH6MWVL 99Ri7mRjDD9gnjBf746rBqGZ90Nd52PcFbkT0G1zCBiRb/zJwhOPvvv5pWk0b9esPiQ0 ao+Gj3plQvvZTggbVZygX2twHTw89FWubrzHcNJSEbUOOJZbouI8xeSlur20P62Uh+xG 5fqQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:mime-version:user-agent:references :message-id:in-reply-to:subject:cc:to:from:date; bh=W0jRdL/9V37ct0a5dc3rtyzZMnc2MDpUgMpM2c4pl6k=; b=JjzJs8amZ9uaOBOsLwzvG5TqgIl3nnVez2etVWQybIWdsLUIAxa3EiR1l2daGfWoHR tiz5zp+PghXoU9kih5lwJ0g3VBRgvv2fNP1EMeycczudakvgnOG9xN+zXBct+6SlQmXr kyo6vnvtu6TX/7hJvS8iwRk1zVIDH2WIIw9pea0r73G8gMbTahx3kcFQbmzzkHKpKDak WPkLnk/U9W+NNMLkzoMxoxkzmUItjUIlrTc7ndoyiHVfBuotaWSchRhE5TV6a76sr5wy e7K2bGObIddKizfKjoKIqz4qY1qmZELI+U9wdXyBJTHlcs2E2gtZ+uWMDFPVY3mT2jZK 72+g== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=intel.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id u81-v6si26306460pfi.175.2018.10.19.17.00.37; Fri, 19 Oct 2018 17:00:53 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=intel.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1726881AbeJTIIW (ORCPT + 99 others); Sat, 20 Oct 2018 04:08:22 -0400 Received: from mga12.intel.com ([192.55.52.136]:30884 "EHLO mga12.intel.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726349AbeJTIIV (ORCPT ); Sat, 20 Oct 2018 04:08:21 -0400 X-Amp-Result: SKIPPED(no attachment in message) X-Amp-File-Uploaded: False Received: from orsmga008.jf.intel.com ([10.7.209.65]) by fmsmga106.fm.intel.com with ESMTP/TLS/DHE-RSA-AES256-GCM-SHA384; 19 Oct 2018 17:00:04 -0700 X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="5.54,401,1534834800"; d="scan'208";a="82918970" Received: from kskibin-mobl.ger.corp.intel.com ([10.249.254.29]) by orsmga008.jf.intel.com with ESMTP; 19 Oct 2018 16:59:59 -0700 Date: Sat, 20 Oct 2018 02:59:57 +0300 (EEST) From: Jarkko Sakkinen X-X-Sender: jsakkine@jsakkine-mobl1 To: Pavel Machek cc: Jarkko Sakkinen , x86@kernel.org, platform-driver-x86@vger.kernel.org, dave.hansen@intel.com, sean.j.christopherson@intel.com, nhorman@redhat.com, npmccallum@redhat.com, serge.ayoun@intel.com, shay.katz-zamir@intel.com, linux-sgx@vger.kernel.org, andriy.shevchenko@linux.intel.com, Jonathan Corbet , Thomas Gleixner , Ingo Molnar , Borislav Petkov , "H. Peter Anvin" , "open list:DOCUMENTATION" , open list Subject: Re: [PATCH v14 19/19] x86/sgx: Driver documentation In-Reply-To: <20181018095727.GC10861@amd> Message-ID: References: <20180925130845.9962-1-jarkko.sakkinen@linux.intel.com> <20180925130845.9962-20-jarkko.sakkinen@linux.intel.com> <20181015205436.GA28500@amd> <20181018095727.GC10861@amd> User-Agent: Alpine 2.21 (DEB 202 2017-01-01) MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII; format=flowed Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Thu, 18 Oct 2018, Pavel Machek wrote: >> Definitely should be refined. >> >> Meltdowns approach AFAIK does not work because reads outside the enclave >> will always have a predefined value (-1) but only if the page is present, >> which was later exploited in the Foreshadow attack. > > What about L1tf and https://github.com/lsds/spectre-attack-sgx ? L1TF is the vuln and Foreshadow is the attack taking advantage of the vuln. I didn't mean to patch the documention in my response or give extensive list of the vulns if you expected that. For kernel documentation it does make sense to give a threat model but not enumerate every possible vuln. /Jarkko