]> git.ipfire.org Git - thirdparty/kernel/stable.git/commit
VFIO: Add the SPR_DSA and SPR_IAX devices to the denylist
authorArjan van de Ven <arjan@linux.intel.com>
Thu, 21 Mar 2024 19:44:07 +0000 (19:44 +0000)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Fri, 17 May 2024 09:56:23 +0000 (11:56 +0200)
commit9ff3c42aa37c2e6989e9b73d466737ef13d74969
tree19ed019368a8ae3050dcf16c4697484dc03ae5be
parent064688d70c33bb5b49dde6e972b9379a8b045d8a
VFIO: Add the SPR_DSA and SPR_IAX devices to the denylist

commit 95feb3160eef0caa6018e175a5560b816aee8e79 upstream.

Due to an erratum with the SPR_DSA and SPR_IAX devices, it is not secure to assign
these devices to virtual machines. Add the PCI IDs of these devices to the VFIO
denylist to ensure that this is handled appropriately by the VFIO subsystem.

The SPR_DSA and SPR_IAX devices are on-SOC devices for the Sapphire Rapids
(and related) family of products that perform data movement and compression.

Signed-off-by: Arjan van de Ven <arjan@linux.intel.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
drivers/dma/idxd/registers.h
drivers/vfio/pci/vfio_pci.c
include/linux/pci_ids.h