Get the latest tech news

Linux 6.17-rc2 To Better Tune Attack Vector Controls For SRSO Mitigation


One of the new exciting security features with Linux 6.17 is Attack Vector Controls as a means of easier managing CPU security mitigations depending upon the system/server use-case

With the Linux 6.17-rc2 kernel due out later today, Attack Vector Controls refines its logic around the Speculative Return Stack Overflow (SRSO) mitigation. "The SRSO bug can theoretically be used to conduct user->user or guest->guest attacks and requires a mitigation (namely IBPB instead of SBPB on context switch) for these. - Do not output AVX512 elapsed time for kernel threads because the data is wrong and fix a NULL pointer dereferencing in the process

Get the Android app

Or read this on Phoronix

Read more on:

Photo of rc2

rc2

Photo of srso mitigation

srso mitigation

Photo of better tune

better tune

Related news:

News photo

systemd 258-rc2 Released In Preparing For H2'2025 Linux Distributions

News photo

Mesa 25.2-rc2 Released With Intel Wildcat Lake Enablement, Legacy-X11 Option Deprecated

News photo

Linux 6.16-rc2 Released With An Initial Batch Of Fixes