<font size=2 face="sans-serif">The P9 and P8 changes are not the same,
so do not presume a 1-to-1 mapping between them. The P8 changes are
all complete in github as far as I'm aware. The P9 changes are not
100% complete yet.</font><br><font size=2 face="sans-serif"><br>--<br>Dan Crowell<br>Senior Software Engineer - Power Systems Enablement Firmware<br>IBM Rochester: t/l 553-2987<br>dcrowell@us.ibm.com</font><br><br><br><br><font size=1 color=#5f5f5f face="sans-serif">From:
</font><font size=1 face="sans-serif">Sergey Kachkin <s.kachkin@gmail.com></font><br><font size=1 color=#5f5f5f face="sans-serif">To:
</font><font size=1 face="sans-serif">Daniel M Crowell <dcrowell@us.ibm.com></font><br><font size=1 color=#5f5f5f face="sans-serif">Cc:
</font><font size=1 face="sans-serif">obmc@yadro.com, openpower-firmware@lists.ozlabs.org,
OpenPower-Firmware <openpower-firmware-bounces+dcrowell=us.ibm.com@lists.ozlabs.org></font><br><font size=1 color=#5f5f5f face="sans-serif">Date:
</font><font size=1 face="sans-serif">03/01/2018 12:46 PM</font><br><font size=1 color=#5f5f5f face="sans-serif">Subject:
</font><font size=1 face="sans-serif">Re: [OpenPower-Firmware]
security fixes for meltdown/spectre on P8</font><br><hr noshade><br><br><br><font size=3>Hi Daniel, </font><br><br><font size=3>thanks, so we have at least part of the fix since Dec'17.
Wondering if there a big picture of all necessary changes </font><font size=2 color=#2f2f2f face="Arial">somewhere</font><font size=3>. </font><br><br><font size=3>I went through release note but noted only some P9 changes,
like below: </font><br><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__github.com_open-2Dpower_hostboot_commit_fcf7d0e3f5fe&d=DwMFaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=h4jjGcAslc3J-z5MjikJOIYkUPpTdOd-JJfXBKDKZNU&s=ziXS8G2Pjk7XOQCxtZv51YHxo6FU-psbBlHgsxvSsEE&e="><font size=3 color=blue><u>https://github.com/open-power/hostboot/commit/fcf7d0e3f5fe</u></font></a><br><br><font size=3>Not sure if it ever related though. </font><br><br><br><font size=3>regards,</font><br><font size=3>Sergey </font><br><br><font size=3>On Thu, Mar 1, 2018 at 8:13 PM, Daniel M Crowell <</font><a href=mailto:dcrowell@us.ibm.com target=_blank><font size=3 color=blue><u>dcrowell@us.ibm.com</u></font></a><font size=3>>
wrote:</font><br><font size=2 face="sans-serif">The processor inits that are required
for these fixes are out in github already. The changes are part of
the hostboot-binaries repo.</font><font size=3><br></font><font size=2 face="sans-serif"><br>This commit should have everything - </font><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__github.com_open-2Dpower_hostboot-2Dbinaries_commit_fc2f7b939f340ba2e33382f6fcb9f908ad554186&d=DwMFaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=h4jjGcAslc3J-z5MjikJOIYkUPpTdOd-JJfXBKDKZNU&s=8THLplAgkqBa0q9Yt-Z7zXsfRsTfAKNfG-ItYsiDYyk&e=" target=_blank><font size=2 color=blue face="sans-serif"><u>https://github.com/open-power/hostboot-binaries/commit/fc2f7b939f340ba2e33382f6fcb9f908ad554186</u></font></a><font size=3><br></font><font size=2 face="sans-serif"><br>Note - I'm not commented on any skiboot-level changes that may be needed.
I'm totally out of that conversation.<br><br>--<br>Dan Crowell<br>Senior Software Engineer - Power Systems Enablement Firmware<br>IBM Rochester: t/l 553-2987</font><font size=2 color=blue face="sans-serif"><u><br></u></font><a href=mailto:dcrowell@us.ibm.com target=_blank><font size=2 color=blue face="sans-serif"><u>dcrowell@us.ibm.com</u></font></a><font size=3><br><br><br></font><font size=1 color=#5f5f5f face="sans-serif"><br>From: </font><font size=1 face="sans-serif">Sergey
Kachkin <</font><a href=mailto:s.kachkin@gmail.com target=_blank><font size=1 color=blue face="sans-serif"><u>s.kachkin@gmail.com</u></font></a><font size=1 face="sans-serif">></font><font size=1 color=#5f5f5f face="sans-serif"><br>To: </font><a href="mailto:openpower-firmware@lists.ozlabs.org" target=_blank><font size=1 color=blue face="sans-serif"><u>openpower-firmware@lists.ozlabs.org</u></font></a><font size=1 color=#5f5f5f face="sans-serif"><br>Cc: </font><a href=mailto:obmc@yadro.com target=_blank><font size=1 color=blue face="sans-serif"><u>obmc@yadro.com</u></font></a><font size=1 color=#5f5f5f face="sans-serif"><br>Date: </font><font size=1 face="sans-serif">03/01/2018
09:46 AM</font><font size=1 color=#5f5f5f face="sans-serif"><br>Subject: </font><font size=1 face="sans-serif">Re:
[OpenPower-Firmware] security fixes for meltdown/spectre on P8</font><font size=1 color=#5f5f5f face="sans-serif"><br>Sent by: </font><font size=1 face="sans-serif">"OpenPower-Firmware"
<openpower-firmware-bounces+dcrowell=</font><a href=mailto:us.ibm.com@lists.ozlabs.org target=_blank><font size=1 color=blue face="sans-serif"><u>us.ibm.com@lists.ozlabs.org</u></font></a><font size=1 face="sans-serif">></font><font size=3><br></font><hr noshade><br><font size=3><br><br><br>Hi Stewart, <br><br>We are building PNOR for our own P8 system and I'm cc'ing the BMC-PNOR
team. <br>I've read that firmware to mitigate Spectre/Meltdown vulnerabilities have
been released on S8*LC systems but situation with OpenPOWER is not clear
yet. <br><br>To be honest I'm not sure what code exactly IBM implemented on their machines
but wondering if there any plans to contribute this code to OpenPOWER (if
not already done)?<br><br><br>thanks, <br><br>regards,<br>Sergey<br>YADRO<br>Engineer<br><br>On Wed, Jan 31, 2018 at 4:36 PM, Sergey Kachkin <</font><a href=mailto:s.kachkin@gmail.com target=_blank><font size=3 color=blue><u>s.kachkin@gmail.com</u></font></a><font size=3>>
wrote:<br>Hi Team, <br><br>from the published info i realised that both OS and FW patches are needed
for CVE-2017-5715, CVE-2017-5753 and CVE-2017-5754 issues mitigation. <br><br>Are there any plans/timeline for including related fixes into P8 PNOR? <br><br>thanks,<br><br><br>regards,<br>Sergey </font><br><tt><font size=2>_______________________________________________<br>OpenPower-Firmware mailing list</font></tt><tt><font size=2 color=blue><u><br></u></font></tt><a href="mailto:OpenPower-Firmware@lists.ozlabs.org" target=_blank><tt><font size=2 color=blue><u>OpenPower-Firmware@lists.ozlabs.org</u></font></tt></a><font size=3 color=blue><u><br></u></font><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__lists.ozlabs.org_listinfo_openpower-2Dfirmware&d=DwIGaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=X2enJEdH-l8_f_JYvU4H0-QcEVhVzx-E5VA81OM45wk&s=DK8ZNbg9TKKStlMMEnUkC6gr0sv9QE939UeBxBlHf5M&e=" target=_blank><tt><font size=2 color=blue><u>https://urldefense.proofpoint.com/v2/url?u=https-3A__lists.ozlabs.org_listinfo_openpower-2Dfirmware&d=DwIGaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=X2enJEdH-l8_f_JYvU4H0-QcEVhVzx-E5VA81OM45wk&s=DK8ZNbg9TKKStlMMEnUkC6gr0sv9QE939UeBxBlHf5M&e=</u></font></tt></a><font size=3><br><br><br></font><br><br><br><BR>