<div dir="ltr">Hi Daniel, <div><br></div><div>thanks, so we have at least part of the fix since Dec'17. Wondering if there a big picture of all necessary changes <span style="color:rgb(34,34,34);font-family:arial,sans-serif;font-size:small;font-style:normal;font-variant-ligatures:normal;font-variant-caps:normal;font-weight:400;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;background-color:rgb(255,255,255);text-decoration-style:initial;text-decoration-color:initial;float:none;display:inline">somewhere</span>. </div><div><br></div><div>I went through release note but noted only some P9 changes, like below: </div><div><a href="https://github.com/open-power/hostboot/commit/fcf7d0e3f5fe">https://github.com/open-power/hostboot/commit/fcf7d0e3f5fe</a><br></div><div><br></div><div>Not sure if it ever related though. </div><div><br></div><div><br></div><div>regards,</div><div>Sergey </div></div><div class="gmail_extra"><br><div class="gmail_quote">On Thu, Mar 1, 2018 at 8:13 PM, Daniel M Crowell <span dir="ltr"><<a href="mailto:dcrowell@us.ibm.com" target="_blank">dcrowell@us.ibm.com</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><font size="2" face="sans-serif">The processor inits that are required for
these fixes are out in github already. The changes are part of the
hostboot-binaries repo.</font><br><br><font size="2" face="sans-serif">This commit should have everything -
</font><a href="https://github.com/open-power/hostboot-binaries/commit/fc2f7b939f340ba2e33382f6fcb9f908ad554186" target="_blank"><font size="2" color="blue" face="sans-serif">https://github.com/open-power/<wbr>hostboot-binaries/commit/<wbr>fc2f7b939f340ba2e33382f6fcb9f9<wbr>08ad554186</font></a><br><br><font size="2" face="sans-serif">Note - I'm not commented on any skiboot-level
changes that may be needed. I'm totally out of that conversation.</font><br><font size="2" face="sans-serif"><br>--<br>Dan Crowell<br>Senior Software Engineer - Power Systems Enablement Firmware<br>IBM Rochester: t/l 553-2987<br><a href="mailto:dcrowell@us.ibm.com" target="_blank">dcrowell@us.ibm.com</a></font><br><br><br><br><font size="1" color="#5f5f5f" face="sans-serif">From:
</font><font size="1" face="sans-serif">Sergey Kachkin <<a href="mailto:s.kachkin@gmail.com" target="_blank">s.kachkin@gmail.com</a>></font><br><font size="1" color="#5f5f5f" face="sans-serif">To:
</font><font size="1" face="sans-serif"><a href="mailto:openpower-firmware@lists.ozlabs.org" target="_blank">openpower-firmware@lists.<wbr>ozlabs.org</a></font><br><font size="1" color="#5f5f5f" face="sans-serif">Cc:
</font><font size="1" face="sans-serif"><a href="mailto:obmc@yadro.com" target="_blank">obmc@yadro.com</a></font><br><font size="1" color="#5f5f5f" face="sans-serif">Date:
</font><font size="1" face="sans-serif">03/01/2018 09:46 AM</font><br><font size="1" color="#5f5f5f" face="sans-serif">Subject:
</font><font size="1" face="sans-serif">Re: [OpenPower-Firmware]
security fixes for meltdown/spectre on P8</font><br><font size="1" color="#5f5f5f" face="sans-serif">Sent by:
</font><font size="1" face="sans-serif">"OpenPower-Firmware"
<openpower-firmware-bounces+<wbr>dcrowell=<a href="mailto:us.ibm.com@lists.ozlabs.org" target="_blank">us.ibm.com@lists.<wbr>ozlabs.org</a>></font><br><hr noshade><div><div class="h5"><br><br><br><font size="3">Hi Stewart, <br><br>We are building PNOR for our own P8 system and I'm cc'ing the BMC-PNOR
team. <br>I've read that firmware to mitigate Spectre/Meltdown vulnerabilities have
been released on S8*LC systems but situation with OpenPOWER is not clear
yet. <br><br>To be honest I'm not sure what code exactly IBM implemented on their machines
but wondering if there any plans to contribute this code to OpenPOWER (if
not already done)?<br><br><br>thanks, <br><br>regards,<br>Sergey<br>YADRO<br>Engineer</font><br><br><font size="3">On Wed, Jan 31, 2018 at 4:36 PM, Sergey Kachkin <</font><a href="mailto:s.kachkin@gmail.com" target="_blank"><font size="3" color="blue"><u>s.kachkin@gmail.com</u></font></a><font size="3">>
wrote:</font><br><font size="3">Hi Team, </font><br><br><font size="3">from the published info i realised that both OS and FW
patches are needed for CVE-2017-5715, CVE-2017-5753 and CVE-2017-5754
issues mitigation. </font><br><br><font size="3">Are there any plans/timeline for including related fixes
into P8 PNOR? </font><br><br><font size="3">thanks,</font><br><br><br><font size="3">regards,</font><br><font size="3">Sergey </font><br></div></div><tt><font size="2">______________________________<wbr>_________________<br>OpenPower-Firmware mailing list<br><a href="mailto:OpenPower-Firmware@lists.ozlabs.org" target="_blank">OpenPower-Firmware@lists.<wbr>ozlabs.org</a><br></font></tt><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__lists.ozlabs.org_listinfo_openpower-2Dfirmware&d=DwIGaQ&c=jf_iaSHvJObTbx-siA1ZOg&r=mCj3CQvqek9g0fdziO-GEHyU1m9T3SAh0ZPd5s_AGpo&m=X2enJEdH-l8_f_JYvU4H0-QcEVhVzx-E5VA81OM45wk&s=DK8ZNbg9TKKStlMMEnUkC6gr0sv9QE939UeBxBlHf5M&e=" target="_blank"><tt><font size="2">https://urldefense.proofpoint.<wbr>com/v2/url?u=https-3A__lists.<wbr>ozlabs.org_listinfo_openpower-<wbr>2Dfirmware&d=DwIGaQ&c=jf_<wbr>iaSHvJObTbx-siA1ZOg&r=<wbr>mCj3CQvqek9g0fdziO-<wbr>GEHyU1m9T3SAh0ZPd5s_AGpo&m=<wbr>X2enJEdH-l8_f_JYvU4H0-<wbr>QcEVhVzx-E5VA81OM45wk&s=<wbr>DK8ZNbg9TKKStlMMEnUkC6gr0sv9QE<wbr>939UeBxBlHf5M&e=</font></tt></a><tt><font size="2"><br></font></tt><br><br><br></blockquote></div><br></div>