Browse Source

docs: recommend use of md-clear feature on all Intel CPUs

Update x86 CPU model guidance to recommend that the md-clear feature is
manually enabled with all Intel CPU models, when supported by the host
microcode.

Signed-off-by: Daniel P. Berrangé <berrange@redhat.com>
Message-Id: <2019051514.5315-3-berrange@redhat.com>
Signed-off-by: Eduardo Habkost <ehabkost@redhat.com>
master
Daniel P. Berrangé 1 month ago
parent
commit
2c7e82a307
1 changed files with 12 additions and 0 deletions
  1. 12
    0
      docs/qemu-cpu-models.texi

+ 12
- 0
docs/qemu-cpu-models.texi View File

@@ -200,6 +200,18 @@ Not included by default in any Intel CPU model.
200 200
 Should be explicitly turned on for all Intel CPU models.
201 201
 
202 202
 Note that not all CPU hardware will support this feature.
203
+
204
+@item @code{md-clear}
205
+
206
+Required to confirm the MDS (CVE-2018-12126, CVE-2018-12127, CVE-2018-12130,
207
+CVE-2019-11091) fixes.
208
+
209
+Not included by default in any Intel CPU model.
210
+
211
+Must be explicitly turned on for all Intel CPU models.
212
+
213
+Requires the host CPU microcode to support this feature before it
214
+can be used for guest CPUs.
203 215
 @end table
204 216
 
205 217
 

Loading…
Cancel
Save