This is a note to let you know that I've just added the patch titled
KPTI: Report when enabled
to the 4.9-stable tree which can be found at: http://www.kernel.org/git/?p=linux/kernel/git/stable/stable-queue.git%3Ba=su...
The filename of the patch is: kpti-report-when-enabled.patch and it can be found in the queue-4.9 subdirectory.
If you, or anyone else, feels it should not be added to the stable tree, please let stable@vger.kernel.org know about it.
From keescook@chromium.org Wed Jan 3 20:48:07 2018
From: Kees Cook keescook@chromium.org Date: Wed, 3 Jan 2018 10:18:01 -0800 Subject: KPTI: Report when enabled To: Greg KH gregkh@linuxfoundation.org Message-ID: 20180103181801.GA33383@beast Content-Disposition: inline
From: Kees Cook keescook@chromium.org
Make sure dmesg reports when KPTI is enabled.
Signed-off-by: Kees Cook keescook@chromium.org Signed-off-by: Greg Kroah-Hartman gregkh@linuxfoundation.org --- arch/x86/mm/kaiser.c | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-)
--- a/arch/x86/mm/kaiser.c +++ b/arch/x86/mm/kaiser.c @@ -10,6 +10,9 @@ #include <linux/mm.h> #include <linux/uaccess.h>
+#undef pr_fmt +#define pr_fmt(fmt) "Kernel/User page tables isolation: " fmt + #include <asm/kaiser.h> #include <asm/tlbflush.h> /* to verify its kaiser declarations */ #include <asm/pgtable.h> @@ -292,7 +295,7 @@ enable: return;
disable: - pr_info("Kernel/User page tables isolation: disabled\n"); + pr_info("disabled\n");
silent_disable: kaiser_enabled = 0; @@ -352,6 +355,8 @@ void __init kaiser_init(void) kaiser_add_user_map_early(&debug_idt_table, sizeof(gate_desc) * NR_VECTORS, __PAGE_KERNEL); + + pr_info("enabled\n"); }
/* Add a mapping to the shadow mapping, and synchronize the mappings */
Patches currently in stable-queue which might be from keescook@chromium.org are
queue-4.9/kpti-rename-to-page_table_isolation.patch queue-4.9/kpti-report-when-enabled.patch