]> git.ipfire.org Git - thirdparty/linux.git/commit
x86/sev: Include XSS value in GHCB CPUID request
authorJohn Allen <john.allen@amd.com>
Wed, 24 Sep 2025 20:08:52 +0000 (20:08 +0000)
committerBorislav Petkov (AMD) <bp@alien8.de>
Thu, 30 Oct 2025 16:47:49 +0000 (17:47 +0100)
commit92ad6505a4b5e28afcc8cf5f4dd3fd137e58026b
treeafcda7e4adc0f2c335145f4df1fed7312b93e153
parent9249bcdea0c6db4f450a9267aa6da5b4dd4153ca
x86/sev: Include XSS value in GHCB CPUID request

When a guest issues a CPUID instruction for Fn0000000D_x01, the hypervisor may
be intercepting the CPUID instruction and need to access the guest XSS value.
For SEV-ES, the XSS value is encrypted and needs to be included in the GHCB to
be visible to the hypervisor.

Signed-off-by: John Allen <john.allen@amd.com>
Signed-off-by: Borislav Petkov (AMD) <bp@alien8.de>
Reviewed-by: Tom Lendacky <thomas.lendacky@amd.com>
Link: https://patch.msgid.link/all/20250924200852.4452-3-john.allen@amd.com/
arch/x86/coco/sev/vc-shared.c
arch/x86/include/asm/svm.h