summaryrefslogtreecommitdiffstats
path: root/include
diff options
context:
space:
mode:
authorPaolo Bonzini <pbonzini@redhat.com>2021-06-09 07:49:13 +0200
committerPaolo Bonzini <pbonzini@redhat.com>2021-06-09 07:49:13 +0200
commit4422829e8053068e0225e4d0ef42dc41ea7c9ef5 (patch)
tree4604b6646782e727dc5d16b506d12e282eded269 /include
parentkvm: avoid speculation-based attacks from out-of-range memslot accesses (diff)
downloadlinux-4422829e8053068e0225e4d0ef42dc41ea7c9ef5.tar.xz
linux-4422829e8053068e0225e4d0ef42dc41ea7c9ef5.zip
kvm: fix previous commit for 32-bit builds
array_index_nospec does not work for uint64_t on 32-bit builds. However, the size of a memory slot must be less than 20 bits wide on those system, since the memory slot must fit in the user address space. So just store it in an unsigned long. Signed-off-by: Paolo Bonzini <pbonzini@redhat.com>
Diffstat (limited to 'include')
-rw-r--r--include/linux/kvm_host.h4
1 files changed, 2 insertions, 2 deletions
diff --git a/include/linux/kvm_host.h b/include/linux/kvm_host.h
index 74995f0a2a3c..8583ed3ff344 100644
--- a/include/linux/kvm_host.h
+++ b/include/linux/kvm_host.h
@@ -1191,8 +1191,8 @@ __gfn_to_hva_memslot(const struct kvm_memory_slot *slot, gfn_t gfn)
* table walks, do not let the processor speculate loads outside
* the guest's registered memslots.
*/
- unsigned long offset = array_index_nospec(gfn - slot->base_gfn,
- slot->npages);
+ unsigned long offset = gfn - slot->base_gfn;
+ offset = array_index_nospec(offset, slot->npages);
return slot->userspace_addr + offset * PAGE_SIZE;
}