Stéphane Lesimple

Results 214 comments of Stéphane Lesimple

Your CPU doesn't seem to have the latest microcode to support SRBDS mitigation. Mitigation for this vulnerability requires a recent kernel AND recent microcode for your CPU.

Your CPU is indeed affected, first row of this table: https://www.intel.com/content/www/us/en/developer/articles/technical/software-security-guidance/resources/processors-affected-srbds.html As of to why you might not have a microcode that mitigates the issue, most probably your CPU is...

@martywd 's issue root cause was different and has been fixed in #316 . For the others: can you try the latest `master` branch? If the result doesn't seem right,...

Do any of you @ilikenwf or @gaul (or both!) run the script with `-v -v` and post the output? This would help pinpointing the problem. I'd like to fix this...

When lockdown is detected (either by the Red Hat patch, or the more recent one that made it to vanilla in 5.4+ since 0cd7e11), the script only relies on CPUID...

This issue had a lot of reporters, can it be considered fixed with latest release?

Thanks for the headsup, their `xlsx` file is very interesting, I'll build some helper to parse the file and ensure the script is completely in sync with this data.

Thanks for the insight, leaving open with the tag "information"

Having a copy of the output on the bare metal server, to compare with the output on the vm would probably help giving you some guidance

Hello @marmarek, First, sorry for the delay, and thanks for this detailed bug report! This is quite uncommon and is extremely valuable. On a side note, there have already been...