x86/spec-ctrl: Allow the RDRAND/RDSEED features to be hidden
authorAndrew Cooper <andrew.cooper3@citrix.com>
Wed, 10 Jun 2020 17:57:00 +0000 (18:57 +0100)
committerAndrew Cooper <andrew.cooper3@citrix.com>
Thu, 11 Jun 2020 15:27:59 +0000 (16:27 +0100)
commit2b77729888fb851ab96e7f77bc854122626b4861
tree36265e10f1be00226de9dde7d8b92845cbe2c77b
parent9be79927a6395f12c9e24afaccf6acbaf81d402e
x86/spec-ctrl: Allow the RDRAND/RDSEED features to be hidden

RDRAND/RDSEED can be hidden using cpuid= to mitigate SRBDS if microcode
isn't available.

This is part of XSA-320 / CVE-2020-0543.

Signed-off-by: Andrew Cooper <andrew.cooper3@citrix.com>
Acked-by: Julien Grall <jgrall@amazon.com>
(cherry picked from commit 7028534d8482d25860c4d1aa8e45f0b911abfc5a)
docs/misc/xen-command-line.markdown
xen/arch/x86/cpuid.c