[LU-11043] kernel update [RHEL7.5 3.10.0-862.3.2.el7] Created: 21/May/18  Updated: 08/Jul/18  Resolved: 07/Jun/18

Status: Resolved
Project: Lustre
Component/s: None
Affects Version/s: None
Fix Version/s: Lustre 2.12.0, Lustre 2.10.5

Type: Bug Priority: Minor
Reporter: Bob Glossman (Inactive) Assignee: Bob Glossman (Inactive)
Resolution: Fixed Votes: 0
Labels: None

Issue Links:
Related
is related to LU-10897 kernel upgrade [RHEL7.5 3.10.0-862.2.... Resolved
is related to LU-11129 kernel update [RHEL7.5 3.10.0-862.6.3... Resolved
Severity: 3
Rank (Obsolete): 9223372036854775807

 Description   

Security Fix(es):

An industry-wide issue was found in the way many modern microprocessor designs have implemented speculative execution of Load & Store instructions (a commonly used performance optimization). It relies on the presence of a precisely-defined instruction sequence in the privileged code as well as the fact that memory read from address to which a recent memory write has occurred may see an older value and subsequently cause an update into the microprocessor's data cache even for speculatively executed instructions that never actually commit (retire). As a result, an unprivileged attacker could use this flaw to read privileged memory by conducting targeted cache side-channel attacks. (CVE-2018-3639)

Note: This issue is present in hardware and cannot be fully fixed via software update. The updated kernel packages provide software side of the mitigation for this hardware issue. To be fully functional, up-to-date CPU microcode applied on the system is required.



 Comments   
Comment by Bob Glossman (Inactive) [ 23/May/18 ]

Bob Glossman (bob.glossman@intel.com) uploaded a new patch: https://review.whamcloud.com/32513
Subject: LU-11043 kernel: kernel update RHEL7.5 [3.10.0-862.3.2.el7]
Project: fs/lustre-release
Branch: master
Current Patch Set: 1
Commit: d6a2fe1191ff9a4f55db443bf5ca134bee0cbdd0

Comment by Gerrit Updater [ 24/May/18 ]

Bob Glossman (bob.glossman@intel.com) uploaded a new patch: https://review.whamcloud.com/32542
Subject: LU-11043 kernel: kernel update RHEL7.5 [3.10.0-862.3.2.el7]
Project: fs/lustre-release
Branch: b2_10
Current Patch Set: 1
Commit: 953bbe678cee1ff9167c4296f162852dd4ebafec

Comment by Gerrit Updater [ 07/Jun/18 ]

Oleg Drokin (oleg.drokin@intel.com) merged in patch https://review.whamcloud.com/32513/
Subject: LU-11043 kernel: kernel update RHEL7.5 [3.10.0-862.3.2.el7]
Project: fs/lustre-release
Branch: master
Current Patch Set:
Commit: 88f6c6887cbf79fb62de4af1f5a73e3c557fe785

Comment by Peter Jones [ 07/Jun/18 ]

Landed for 2.12

Comment by Gerrit Updater [ 11/Jun/18 ]

John L. Hammond (john.hammond@intel.com) merged in patch https://review.whamcloud.com/32542/
Subject: LU-11043 kernel: kernel update RHEL7.5 [3.10.0-862.3.2.el7]
Project: fs/lustre-release
Branch: b2_10
Current Patch Set:
Commit: 29291d976734950bac2b028bc09fc22f0b64785d

Generated at Sat Feb 10 02:40:26 UTC 2024 using Jira 9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c.