<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html;
      charset=windows-1252">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    To hijack the thread slightly, is there an overview somewhere of
    what needs to be done at the OS level to support these fixes? We
    would obviously like to implement the OS-level changes for FreeBSD,
    but the only reference for even what the exposure of P8/9 to Spectre
    is seems to be some moderately cryptic Linux commits.<br>
    -Nathan<br>
    <br>
    <div class="moz-cite-prefix">On 03/01/18 13:08, Daniel M Crowell
      wrote:<br>
    </div>
    <blockquote type="cite"
cite="mid:OF91761EF1.465F3E2E-ON86258243.007415AE-86258243.00742B94@notes.na.collabserv.com"><font
        size="2" face="sans-serif">The P9 and P8 changes are not the
        same,
        so do not presume a 1-to-1 mapping between them.  The P8 changes
        are
        all complete in github as far as I'm aware.  The P9 changes are
        not
        100% complete yet.</font><br>
      <font size="2" face="sans-serif"><br>
        --<br>
        Dan Crowell<br>
        Senior Software Engineer - Power Systems Enablement Firmware<br>
        IBM Rochester: t/l 553-2987<br>
        <a class="moz-txt-link-abbreviated" href="mailto:dcrowell@us.ibm.com">dcrowell@us.ibm.com</a></font><br>
      <br>
      <br>
      <br>
      <font color="#5f5f5f" size="1" face="sans-serif">From:      
         </font><font size="1" face="sans-serif">Sergey Kachkin
        <a class="moz-txt-link-rfc2396E" href="mailto:s.kachkin@gmail.com"><s.kachkin@gmail.com></a></font><br>
      <font color="#5f5f5f" size="1" face="sans-serif">To:      
         </font><font size="1" face="sans-serif">Daniel M Crowell
        <a class="moz-txt-link-rfc2396E" href="mailto:dcrowell@us.ibm.com"><dcrowell@us.ibm.com></a></font><br>
      <font color="#5f5f5f" size="1" face="sans-serif">Cc:      
         </font><font size="1" face="sans-serif"><a class="moz-txt-link-abbreviated" href="mailto:obmc@yadro.com">obmc@yadro.com</a>,
        <a class="moz-txt-link-abbreviated" href="mailto:openpower-firmware@lists.ozlabs.org">openpower-firmware@lists.ozlabs.org</a>,
        OpenPower-Firmware
        <a class="moz-txt-link-rfc2396E" href="mailto:openpower-firmware-bounces+dcrowell=us.ibm.com@lists.ozlabs.org"><openpower-firmware-bounces+dcrowell=us.ibm.com@lists.ozlabs.org></a></font><br>
      <font color="#5f5f5f" size="1" face="sans-serif">Date:      
         </font><font size="1" face="sans-serif">03/01/2018 12:46 PM</font><br>
      <font color="#5f5f5f" size="1" face="sans-serif">Subject:    
           </font><font size="1" face="sans-serif">Re:
        [OpenPower-Firmware]
        security fixes for meltdown/spectre on P8</font><br>
      <hr noshade="noshade"><br>
      <br>
      <br>
      <font size="3">Hi Daniel, </font><br>
      <br>
      <font size="3">thanks, so we have at least part of the fix since
        Dec'17. 
        Wondering if there a big picture  of all necessary changes </font><font
        color="#2f2f2f" size="2" face="Arial">somewhere</font><font
        size="3">. </font><br>
      <br>
      <font size="3">I went through release note but noted only some P9
        changes,
        like below: </font><br>
      <a
href="https://urldefense.proofpoint.com/v2/url?u=https-3A__github.com_open-2Dpower_hostboot_commit_fcf7d0e3f5fe&d=DwMFaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=h4jjGcAslc3J-z5MjikJOIYkUPpTdOd-JJfXBKDKZNU&s=ziXS8G2Pjk7XOQCxtZv51YHxo6FU-psbBlHgsxvSsEE&e="
        moz-do-not-send="true"><font color="blue" size="3"><u>https://github.com/open-power/hostboot/commit/fcf7d0e3f5fe</u></font></a><br>
      <br>
      <font size="3">Not sure if it ever related though. </font><br>
      <br>
      <br>
      <font size="3">regards,</font><br>
      <font size="3">Sergey </font><br>
      <br>
      <font size="3">On Thu, Mar 1, 2018 at 8:13 PM, Daniel M Crowell
        <</font><a href="mailto:dcrowell@us.ibm.com" target="_blank"
        moz-do-not-send="true"><font color="blue" size="3"><u>dcrowell@us.ibm.com</u></font></a><font
        size="3">>
        wrote:</font><br>
      <font size="2" face="sans-serif">The processor inits that are
        required
        for these fixes are out in github already.  The changes are part
        of
        the hostboot-binaries repo.</font><font size="3"><br>
      </font><font size="2" face="sans-serif"><br>
        This commit should have everything - </font><a
href="https://urldefense.proofpoint.com/v2/url?u=https-3A__github.com_open-2Dpower_hostboot-2Dbinaries_commit_fc2f7b939f340ba2e33382f6fcb9f908ad554186&d=DwMFaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=h4jjGcAslc3J-z5MjikJOIYkUPpTdOd-JJfXBKDKZNU&s=8THLplAgkqBa0q9Yt-Z7zXsfRsTfAKNfG-ItYsiDYyk&e="
        target="_blank" moz-do-not-send="true"><font color="blue"
          size="2" face="sans-serif"><u>https://github.com/open-power/hostboot-binaries/commit/fc2f7b939f340ba2e33382f6fcb9f908ad554186</u></font></a><font
        size="3"><br>
      </font><font size="2" face="sans-serif"><br>
        Note - I'm not commented on any skiboot-level changes that may
        be needed. 
        I'm totally out of that conversation.<br>
        <br>
        --<br>
        Dan Crowell<br>
        Senior Software Engineer - Power Systems Enablement Firmware<br>
        IBM Rochester: t/l 553-2987</font><font color="blue" size="2"
        face="sans-serif"><u><br>
        </u></font><a href="mailto:dcrowell@us.ibm.com" target="_blank"
        moz-do-not-send="true"><font color="blue" size="2"
          face="sans-serif"><u>dcrowell@us.ibm.com</u></font></a><font
        size="3"><br>
        <br>
        <br>
      </font><font color="#5f5f5f" size="1" face="sans-serif"><br>
        From:        </font><font size="1" face="sans-serif">Sergey
        Kachkin <</font><a href="mailto:s.kachkin@gmail.com"
        target="_blank" moz-do-not-send="true"><font color="blue"
          size="1" face="sans-serif"><u>s.kachkin@gmail.com</u></font></a><font
        size="1" face="sans-serif">></font><font color="#5f5f5f"
        size="1" face="sans-serif"><br>
        To:        </font><a
        href="mailto:openpower-firmware@lists.ozlabs.org"
        target="_blank" moz-do-not-send="true"><font color="blue"
          size="1" face="sans-serif"><u>openpower-firmware@lists.ozlabs.org</u></font></a><font
        color="#5f5f5f" size="1" face="sans-serif"><br>
        Cc:        </font><a href="mailto:obmc@yadro.com"
        target="_blank" moz-do-not-send="true"><font color="blue"
          size="1" face="sans-serif"><u>obmc@yadro.com</u></font></a><font
        color="#5f5f5f" size="1" face="sans-serif"><br>
        Date:        </font><font size="1" face="sans-serif">03/01/2018
        09:46 AM</font><font color="#5f5f5f" size="1" face="sans-serif"><br>
        Subject:        </font><font size="1" face="sans-serif">Re:
        [OpenPower-Firmware] security fixes for meltdown/spectre on P8</font><font
        color="#5f5f5f" size="1" face="sans-serif"><br>
        Sent by:        </font><font size="1" face="sans-serif">"OpenPower-Firmware"
        <openpower-firmware-bounces+dcrowell=</font><a
        href="mailto:us.ibm.com@lists.ozlabs.org" target="_blank"
        moz-do-not-send="true"><font color="blue" size="1"
          face="sans-serif"><u>us.ibm.com@lists.ozlabs.org</u></font></a><font
        size="1" face="sans-serif">></font><font size="3"><br>
      </font>
      <hr noshade="noshade"><br>
      <font size="3"><br>
        <br>
        <br>
        Hi Stewart, <br>
        <br>
        We are building PNOR for our own P8 system and I'm cc'ing  the
        BMC-PNOR
        team. <br>
        I've read that firmware to mitigate Spectre/Meltdown
        vulnerabilities have
        been released on S8*LC systems but situation with OpenPOWER is
        not clear
        yet. <br>
        <br>
        To be honest I'm not sure what code exactly IBM implemented on
        their machines
        but wondering if there any plans to contribute this code to
        OpenPOWER (if
        not already done)?<br>
        <br>
        <br>
        thanks, <br>
        <br>
        regards,<br>
        Sergey<br>
        YADRO<br>
        Engineer<br>
        <br>
        On Wed, Jan 31, 2018 at 4:36 PM, Sergey Kachkin <</font><a
        href="mailto:s.kachkin@gmail.com" target="_blank"
        moz-do-not-send="true"><font color="blue" size="3"><u>s.kachkin@gmail.com</u></font></a><font
        size="3">>
        wrote:<br>
        Hi Team, <br>
        <br>
        from the published info i realised that both OS and FW patches
        are needed
        for CVE-2017-5715, CVE-2017-5753 and CVE-2017-5754 issues
        mitigation. <br>
        <br>
        Are there any plans/timeline for including related fixes into P8
        PNOR? <br>
        <br>
        thanks,<br>
        <br>
        <br>
        regards,<br>
        Sergey </font><br>
      <tt><font size="2">_______________________________________________<br>
          OpenPower-Firmware mailing list</font></tt><tt><font
          color="blue" size="2"><u><br>
          </u></font></tt><a
        href="mailto:OpenPower-Firmware@lists.ozlabs.org"
        target="_blank" moz-do-not-send="true"><tt><font color="blue"
            size="2"><u>OpenPower-Firmware@lists.ozlabs.org</u></font></tt></a><font
        color="blue" size="3"><u><br>
        </u></font><a
href="https://urldefense.proofpoint.com/v2/url?u=https-3A__lists.ozlabs.org_listinfo_openpower-2Dfirmware&d=DwIGaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=X2enJEdH-l8_f_JYvU4H0-QcEVhVzx-E5VA81OM45wk&s=DK8ZNbg9TKKStlMMEnUkC6gr0sv9QE939UeBxBlHf5M&e="
        target="_blank" moz-do-not-send="true"><tt><font color="blue"
            size="2"><u>https://urldefense.proofpoint.com/v2/url?u=https-3A__lists.ozlabs.org_listinfo_openpower-2Dfirmware&d=DwIGaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=X2enJEdH-l8_f_JYvU4H0-QcEVhVzx-E5VA81OM45wk&s=DK8ZNbg9TKKStlMMEnUkC6gr0sv9QE939UeBxBlHf5M&e=</u></font></tt></a><font
        size="3"><br>
        <br>
        <br>
      </font><br>
      <br>
      <br>
      <br>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
      <pre wrap="">_______________________________________________
OpenPower-Firmware mailing list
<a class="moz-txt-link-abbreviated" href="mailto:OpenPower-Firmware@lists.ozlabs.org">OpenPower-Firmware@lists.ozlabs.org</a>
<a class="moz-txt-link-freetext" href="https://lists.ozlabs.org/listinfo/openpower-firmware">https://lists.ozlabs.org/listinfo/openpower-firmware</a>
</pre>
    </blockquote>
    <br>
  </body>
</html>