]> git.ipfire.org Git - thirdparty/kernel/stable.git/commitdiff
x86/microcode: Fix Entrysign revision check for Zen1/Naples
authorAndrew Cooper <andrew.cooper3@citrix.com>
Mon, 20 Oct 2025 14:41:24 +0000 (15:41 +0100)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Wed, 29 Oct 2025 13:09:00 +0000 (14:09 +0100)
commit 876f0d43af78639790bee0e57b39d498ae35adcf upstream.

... to match AMD's statement here:

https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7033.html

Fixes: 50cef76d5cb0 ("x86/microcode/AMD: Load only SHA256-checksummed patches")
Signed-off-by: Andrew Cooper <andrew.cooper3@citrix.com>
Signed-off-by: Borislav Petkov (AMD) <bp@alien8.de>
Cc: <stable@kernel.org>
Link: https://patch.msgid.link/20251020144124.2930784-1-andrew.cooper3@citrix.com
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
arch/x86/kernel/cpu/microcode/amd.c

index 910accfeb7856924934ab7e45173a65f9ea287c6..5d2949b1e4b3c945eea2312fccde0dbda95fcb98 100644 (file)
@@ -182,7 +182,7 @@ static bool need_sha_check(u32 cur_rev)
        }
 
        switch (cur_rev >> 8) {
-       case 0x80012: return cur_rev <= 0x800126f; break;
+       case 0x80012: return cur_rev <= 0x8001277; break;
        case 0x80082: return cur_rev <= 0x800820f; break;
        case 0x83010: return cur_rev <= 0x830107c; break;
        case 0x86001: return cur_rev <= 0x860010e; break;