News: 0001580369

  ARM Give a man a fire and he's warm for a day, but set fire to him and he's warm for the rest of his life (Terry Pratchett, Jingo)

Intel Posts New Linux Patches To Reduce Overhead Of VMSCAPE Mitigation

([Linux Security] 4 Hours Ago Less Costly VMSCAPE)


Earlier this month [1]the VMSCAPE CPU security vulnerability was made public and affecting both AMD and Intel processors. VMSCAPE can lead to leaking information from a user-space hypervisor via speculative side channels. An Intel engineer today posted a new set of patches for helping to reduce the mitigation costs of VMSCAPE protections on modern Intel processors.

Intel Linux engineer Pawan Gupta posted the set of two patches today for improving the performance on recent Core/Xeon processors following the recent VMSCAPE vulnerability mitigation.

Pawan Gupta explained with [2]the patch series :

"These patches aim to improve the performance of a recent mitigation for VMSCAPE vulnerability. This improvement is relevant for BHI variant of VMSCAPE that affect Alder Lake and newer processors.

The current mitigation approach uses IBPB on kvm-exit-to-userspace for all affected range of CPUs. This is an overkill for CPUs that are only affected by the BHI variant. On such CPUs clearing the branch history is sufficient for VMSCAPE, and also more apt as the underlying issue is due to poisoned branch history.

Roadmap:

- First patch introduces clear_bhb_long_loop() for processors with larger branch history tables.

- Second patch replaces IBPB on exit-to-userspace with branch history clearing sequence."

Benchmarks provided are showing the VMSCAPE mitigation using BHB-Clear being less costly than the IBPB approach:

Clearly better numbers than the original VMSCAPE mitigation with the new BHB Clear code but still not without some costs for iPerf and other workloads. This code is now under review for the Linux kernel.



[1] https://www.phoronix.com/news/Linux-VMSCAPE

[2] https://lore.kernel.org/lkml/20250924-vmscape-bhb-v1-0-da51f0e1934d@linux.intel.com/



phoronix

Ladies and Gentlemen, Hobos and Tramps,
Cross-eyed mosquitos and bowlegged ants,
I come before you to stand behind you
To tell you of something I know nothing about.
Next Thursday (which is good Friday),
There will be a convention held in the
Women's Club which is strictly for Men.
Admission is free, pay at the door,
Pull up a chair, and sit on the floor.
It was a summer's day in winter,
And the snow was raining fast,
As a barefoot boy with shoes on,
Stood sitting in the grass.
Oh, that bright day in the dead of night,
Two dead men got up to fight.
Three blind men to see fair play,
Forty mutes to yell "Hooray"!
Back to back, they faced each other,
Drew their swords and shot each other.
A deaf policeman heard the noise,
Came and arrested those two dead boys.