diff options
| author | Jan Beulich <jbeulich@suse.com> | 2013-05-02 17:19:41 +0200 |
|---|---|---|
| committer | Jan Beulich <jbeulich@suse.com> | 2013-05-02 17:19:41 +0200 |
| commit | 5f34d2f90f32c1cf386715a7f9c9bb9c8beb6b1a (patch) | |
| tree | 5e165bfc781b1fa5132af2c57a507d770203ed50 /tools/lib/sys_string.h | |
| parent | a4b2683b11cce70f9bff74d6cb615e8effa2e32f (diff) | |
| download | xen-5f34d2f90f32c1cf386715a7f9c9bb9c8beb6b1a.tar.gz xen-5f34d2f90f32c1cf386715a7f9c9bb9c8beb6b1a.tar.bz2 xen-5f34d2f90f32c1cf386715a7f9c9bb9c8beb6b1a.zip | |
VT-d: don't permit SVT_NO_VERIFY entries for known device types
Only in cases where we don't know what to do we should leave the IRTE
blank (suppressing all validation), but we should always log a warning
in those cases (as being insecure).
This is CVE-2013-1952 / XSA-49.
Signed-off-by: Jan Beulich <jbeulich@suse.com>
Acked-by: "Zhang, Xiantao" <xiantao.zhang@intel.com>
master commit: 63cec00679cc65ab5d5a9447a62d5202f155b78c
master date: 2013-05-02 17:08:58 +0200
Diffstat (limited to 'tools/lib/sys_string.h')
0 files changed, 0 insertions, 0 deletions
