<html>
<head>
<meta http-equiv="Content-Type" content="text/html;
charset=windows-1252">
</head>
<body text="#000000" bgcolor="#FFFFFF">
To hijack the thread slightly, is there an overview somewhere of
what needs to be done at the OS level to support these fixes? We
would obviously like to implement the OS-level changes for FreeBSD,
but the only reference for even what the exposure of P8/9 to Spectre
is seems to be some moderately cryptic Linux commits.<br>
-Nathan<br>
<br>
<div class="moz-cite-prefix">On 03/01/18 13:08, Daniel M Crowell
wrote:<br>
</div>
<blockquote type="cite"
cite="mid:OF91761EF1.465F3E2E-ON86258243.007415AE-86258243.00742B94@notes.na.collabserv.com"><font
size="2" face="sans-serif">The P9 and P8 changes are not the
same,
so do not presume a 1-to-1 mapping between them. The P8 changes
are
all complete in github as far as I'm aware. The P9 changes are
not
100% complete yet.</font><br>
<font size="2" face="sans-serif"><br>
--<br>
Dan Crowell<br>
Senior Software Engineer - Power Systems Enablement Firmware<br>
IBM Rochester: t/l 553-2987<br>
<a class="moz-txt-link-abbreviated" href="mailto:dcrowell@us.ibm.com">dcrowell@us.ibm.com</a></font><br>
<br>
<br>
<br>
<font color="#5f5f5f" size="1" face="sans-serif">From:
</font><font size="1" face="sans-serif">Sergey Kachkin
<a class="moz-txt-link-rfc2396E" href="mailto:s.kachkin@gmail.com"><s.kachkin@gmail.com></a></font><br>
<font color="#5f5f5f" size="1" face="sans-serif">To:
</font><font size="1" face="sans-serif">Daniel M Crowell
<a class="moz-txt-link-rfc2396E" href="mailto:dcrowell@us.ibm.com"><dcrowell@us.ibm.com></a></font><br>
<font color="#5f5f5f" size="1" face="sans-serif">Cc:
</font><font size="1" face="sans-serif"><a class="moz-txt-link-abbreviated" href="mailto:obmc@yadro.com">obmc@yadro.com</a>,
<a class="moz-txt-link-abbreviated" href="mailto:openpower-firmware@lists.ozlabs.org">openpower-firmware@lists.ozlabs.org</a>,
OpenPower-Firmware
<a class="moz-txt-link-rfc2396E" href="mailto:openpower-firmware-bounces+dcrowell=us.ibm.com@lists.ozlabs.org"><openpower-firmware-bounces+dcrowell=us.ibm.com@lists.ozlabs.org></a></font><br>
<font color="#5f5f5f" size="1" face="sans-serif">Date:
</font><font size="1" face="sans-serif">03/01/2018 12:46 PM</font><br>
<font color="#5f5f5f" size="1" face="sans-serif">Subject:
</font><font size="1" face="sans-serif">Re:
[OpenPower-Firmware]
security fixes for meltdown/spectre on P8</font><br>
<hr noshade="noshade"><br>
<br>
<br>
<font size="3">Hi Daniel, </font><br>
<br>
<font size="3">thanks, so we have at least part of the fix since
Dec'17.
Wondering if there a big picture of all necessary changes </font><font
color="#2f2f2f" size="2" face="Arial">somewhere</font><font
size="3">. </font><br>
<br>
<font size="3">I went through release note but noted only some P9
changes,
like below: </font><br>
<a
href="https://urldefense.proofpoint.com/v2/url?u=https-3A__github.com_open-2Dpower_hostboot_commit_fcf7d0e3f5fe&d=DwMFaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=h4jjGcAslc3J-z5MjikJOIYkUPpTdOd-JJfXBKDKZNU&s=ziXS8G2Pjk7XOQCxtZv51YHxo6FU-psbBlHgsxvSsEE&e="
moz-do-not-send="true"><font color="blue" size="3"><u>https://github.com/open-power/hostboot/commit/fcf7d0e3f5fe</u></font></a><br>
<br>
<font size="3">Not sure if it ever related though. </font><br>
<br>
<br>
<font size="3">regards,</font><br>
<font size="3">Sergey </font><br>
<br>
<font size="3">On Thu, Mar 1, 2018 at 8:13 PM, Daniel M Crowell
<</font><a href="mailto:dcrowell@us.ibm.com" target="_blank"
moz-do-not-send="true"><font color="blue" size="3"><u>dcrowell@us.ibm.com</u></font></a><font
size="3">>
wrote:</font><br>
<font size="2" face="sans-serif">The processor inits that are
required
for these fixes are out in github already. The changes are part
of
the hostboot-binaries repo.</font><font size="3"><br>
</font><font size="2" face="sans-serif"><br>
This commit should have everything - </font><a
href="https://urldefense.proofpoint.com/v2/url?u=https-3A__github.com_open-2Dpower_hostboot-2Dbinaries_commit_fc2f7b939f340ba2e33382f6fcb9f908ad554186&d=DwMFaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=h4jjGcAslc3J-z5MjikJOIYkUPpTdOd-JJfXBKDKZNU&s=8THLplAgkqBa0q9Yt-Z7zXsfRsTfAKNfG-ItYsiDYyk&e="
target="_blank" moz-do-not-send="true"><font color="blue"
size="2" face="sans-serif"><u>https://github.com/open-power/hostboot-binaries/commit/fc2f7b939f340ba2e33382f6fcb9f908ad554186</u></font></a><font
size="3"><br>
</font><font size="2" face="sans-serif"><br>
Note - I'm not commented on any skiboot-level changes that may
be needed.
I'm totally out of that conversation.<br>
<br>
--<br>
Dan Crowell<br>
Senior Software Engineer - Power Systems Enablement Firmware<br>
IBM Rochester: t/l 553-2987</font><font color="blue" size="2"
face="sans-serif"><u><br>
</u></font><a href="mailto:dcrowell@us.ibm.com" target="_blank"
moz-do-not-send="true"><font color="blue" size="2"
face="sans-serif"><u>dcrowell@us.ibm.com</u></font></a><font
size="3"><br>
<br>
<br>
</font><font color="#5f5f5f" size="1" face="sans-serif"><br>
From: </font><font size="1" face="sans-serif">Sergey
Kachkin <</font><a href="mailto:s.kachkin@gmail.com"
target="_blank" moz-do-not-send="true"><font color="blue"
size="1" face="sans-serif"><u>s.kachkin@gmail.com</u></font></a><font
size="1" face="sans-serif">></font><font color="#5f5f5f"
size="1" face="sans-serif"><br>
To: </font><a
href="mailto:openpower-firmware@lists.ozlabs.org"
target="_blank" moz-do-not-send="true"><font color="blue"
size="1" face="sans-serif"><u>openpower-firmware@lists.ozlabs.org</u></font></a><font
color="#5f5f5f" size="1" face="sans-serif"><br>
Cc: </font><a href="mailto:obmc@yadro.com"
target="_blank" moz-do-not-send="true"><font color="blue"
size="1" face="sans-serif"><u>obmc@yadro.com</u></font></a><font
color="#5f5f5f" size="1" face="sans-serif"><br>
Date: </font><font size="1" face="sans-serif">03/01/2018
09:46 AM</font><font color="#5f5f5f" size="1" face="sans-serif"><br>
Subject: </font><font size="1" face="sans-serif">Re:
[OpenPower-Firmware] security fixes for meltdown/spectre on P8</font><font
color="#5f5f5f" size="1" face="sans-serif"><br>
Sent by: </font><font size="1" face="sans-serif">"OpenPower-Firmware"
<openpower-firmware-bounces+dcrowell=</font><a
href="mailto:us.ibm.com@lists.ozlabs.org" target="_blank"
moz-do-not-send="true"><font color="blue" size="1"
face="sans-serif"><u>us.ibm.com@lists.ozlabs.org</u></font></a><font
size="1" face="sans-serif">></font><font size="3"><br>
</font>
<hr noshade="noshade"><br>
<font size="3"><br>
<br>
<br>
Hi Stewart, <br>
<br>
We are building PNOR for our own P8 system and I'm cc'ing the
BMC-PNOR
team. <br>
I've read that firmware to mitigate Spectre/Meltdown
vulnerabilities have
been released on S8*LC systems but situation with OpenPOWER is
not clear
yet. <br>
<br>
To be honest I'm not sure what code exactly IBM implemented on
their machines
but wondering if there any plans to contribute this code to
OpenPOWER (if
not already done)?<br>
<br>
<br>
thanks, <br>
<br>
regards,<br>
Sergey<br>
YADRO<br>
Engineer<br>
<br>
On Wed, Jan 31, 2018 at 4:36 PM, Sergey Kachkin <</font><a
href="mailto:s.kachkin@gmail.com" target="_blank"
moz-do-not-send="true"><font color="blue" size="3"><u>s.kachkin@gmail.com</u></font></a><font
size="3">>
wrote:<br>
Hi Team, <br>
<br>
from the published info i realised that both OS and FW patches
are needed
for CVE-2017-5715, CVE-2017-5753 and CVE-2017-5754 issues
mitigation. <br>
<br>
Are there any plans/timeline for including related fixes into P8
PNOR? <br>
<br>
thanks,<br>
<br>
<br>
regards,<br>
Sergey </font><br>
<tt><font size="2">_______________________________________________<br>
OpenPower-Firmware mailing list</font></tt><tt><font
color="blue" size="2"><u><br>
</u></font></tt><a
href="mailto:OpenPower-Firmware@lists.ozlabs.org"
target="_blank" moz-do-not-send="true"><tt><font color="blue"
size="2"><u>OpenPower-Firmware@lists.ozlabs.org</u></font></tt></a><font
color="blue" size="3"><u><br>
</u></font><a
href="https://urldefense.proofpoint.com/v2/url?u=https-3A__lists.ozlabs.org_listinfo_openpower-2Dfirmware&d=DwIGaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=X2enJEdH-l8_f_JYvU4H0-QcEVhVzx-E5VA81OM45wk&s=DK8ZNbg9TKKStlMMEnUkC6gr0sv9QE939UeBxBlHf5M&e="
target="_blank" moz-do-not-send="true"><tt><font color="blue"
size="2"><u>https://urldefense.proofpoint.com/v2/url?u=https-3A__lists.ozlabs.org_listinfo_openpower-2Dfirmware&d=DwIGaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=X2enJEdH-l8_f_JYvU4H0-QcEVhVzx-E5VA81OM45wk&s=DK8ZNbg9TKKStlMMEnUkC6gr0sv9QE939UeBxBlHf5M&e=</u></font></tt></a><font
size="3"><br>
<br>
<br>
</font><br>
<br>
<br>
<br>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<br>
<pre wrap="">_______________________________________________
OpenPower-Firmware mailing list
<a class="moz-txt-link-abbreviated" href="mailto:OpenPower-Firmware@lists.ozlabs.org">OpenPower-Firmware@lists.ozlabs.org</a>
<a class="moz-txt-link-freetext" href="https://lists.ozlabs.org/listinfo/openpower-firmware">https://lists.ozlabs.org/listinfo/openpower-firmware</a>
</pre>
</blockquote>
<br>
</body>
</html>