]> git.ipfire.org Git - thirdparty/kernel/stable.git/commitdiff
KVM: nVMX: Truncate base/index GPR value on address calc in !64-bit
authorSean Christopherson <seanjc@google.com>
Thu, 22 Apr 2021 02:21:25 +0000 (19:21 -0700)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Fri, 14 May 2021 08:49:31 +0000 (10:49 +0200)
commit 82277eeed65eed6c6ee5b8f97bd978763eab148f upstream.

Drop bits 63:32 of the base and/or index GPRs when calculating the
effective address of a VMX instruction memory operand.  Outside of 64-bit
mode, memory encodings are strictly limited to E*X and below.

Fixes: 064aea774768 ("KVM: nVMX: Decoding memory operands of VMX instructions")
Cc: stable@vger.kernel.org
Signed-off-by: Sean Christopherson <seanjc@google.com>
Message-Id: <20210422022128.3464144-7-seanjc@google.com>
Signed-off-by: Paolo Bonzini <pbonzini@redhat.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
arch/x86/kvm/vmx/nested.c

index 3c9c4219b2f6d473dc4a33c870cbd61c8e6223b8..4cf82488622c21ff1b76029e579ec67e08408e49 100644 (file)
@@ -4639,9 +4639,9 @@ int get_vmx_mem_address(struct kvm_vcpu *vcpu, unsigned long exit_qualification,
        else if (addr_size == 0)
                off = (gva_t)sign_extend64(off, 15);
        if (base_is_valid)
-               off += kvm_register_read(vcpu, base_reg);
+               off += kvm_register_readl(vcpu, base_reg);
        if (index_is_valid)
-               off += kvm_register_read(vcpu, index_reg) << scaling;
+               off += kvm_register_readl(vcpu, index_reg) << scaling;
        vmx_get_segment(vcpu, &s, seg_reg);
 
        /*