]> git.ipfire.org Git - thirdparty/kernel/stable.git/commit
x86/microcode/AMD: Limit Entrysign signature checking to known generations
authorBorislav Petkov (AMD) <bp@alien8.de>
Thu, 23 Oct 2025 12:46:29 +0000 (14:46 +0200)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Mon, 1 Dec 2025 10:46:03 +0000 (11:46 +0100)
commit7b719a57ad0ee2bbf2a5bb623590d43631836619
tree775140973e572969c2ebb9c3fc9a08d553ecd6ca
parent560292ae3e76b0b4ce0472f1a5076d61f37463aa
x86/microcode/AMD: Limit Entrysign signature checking to known generations

[ Upstream commit 8a9fb5129e8e64d24543ebc70de941a2d77a9e77 ]

Limit Entrysign sha256 signature checking to CPUs in the range Zen1-Zen5.

X86_BUG cannot be used here because the loading on the BSP happens way
too early, before the cpufeatures machinery has been set up.

Signed-off-by: Borislav Petkov (AMD) <bp@alien8.de>
Link: https://patch.msgid.link/all/20251023124629.5385-1-bp@kernel.org
Signed-off-by: Sasha Levin <sashal@kernel.org>
arch/x86/kernel/cpu/microcode/amd.c