View previous topic :: View next topic |
Author |
Message |
Swomp n00b
Joined: 07 Sep 2022 Posts: 28
|
Posted: Thu Dec 14, 2023 12:54 pm Post subject: Speculative Return Stack Overflow: IBPB-extending microcode |
|
|
I have recently installed gentoo and now I've tried to apply microcode updates, but I have this messages:
Code: |
dmesg -t | grep microcode:
Speculative Return Stack Overflow: IBPB-extending microcode not applied!
Speculative Return Stack Overflow: Mitigation: safe RET, no microcode
microcode: CPU0: patch_level=0x0a20120a
microcode: CPU1: patch_level=0x0a20120a
microcode: CPU2: patch_level=0x0a20120a
microcode: CPU3: patch_level=0x0a20120a
microcode: CPU4: patch_level=0x0a20120a
microcode: CPU5: patch_level=0x0a20120a
microcode: CPU6: patch_level=0x0a20120a
microcode: CPU7: patch_level=0x0a20120a
microcode: CPU8: patch_level=0x0a20120a
microcode: CPU9: patch_level=0x0a20120a
microcode: CPU10: patch_level=0x0a20120a
microcode: CPU11: patch_level=0x0a20120a
microcode: Microcode Update Driver: v2.2.
|
I've tried to install newest linux-firmware and regenerate initramfs with dracut and genkernel but nothing works. I have zen3 ryzen 5 5600X CPU. What should I do? |
|
Back to top |
|
|
pietinger Moderator
Joined: 17 Oct 2006 Posts: 4157 Location: Bavaria
|
Posted: Thu Dec 14, 2023 1:06 pm Post subject: |
|
|
Swomp wrote: | What should I do? |
Nothing ... ... You must wait for a new microcode for your CPU (AMD is working on this; some AMD CPU have already an updated microcode). _________________ https://wiki.gentoo.org/wiki/User:Pietinger |
|
Back to top |
|
|
Swomp n00b
Joined: 07 Sep 2022 Posts: 28
|
Posted: Thu Dec 14, 2023 1:08 pm Post subject: |
|
|
pietinger wrote: | Swomp wrote: | What should I do? |
Nothing ... ... You must wait for a new microcode for your CPU (AMD is working on this; some AMD CPU have already an updated microcode). |
Okay, thank you VERY much. |
|
Back to top |
|
|
Goverp Advocate
Joined: 07 Mar 2007 Posts: 2009
|
Posted: Fri Dec 15, 2023 9:45 am Post subject: |
|
|
And you will need to update your BIOS firmware when the upgraded version arrives - the test for the mitigations that issues the 'Speculative Return Stack Overflow: IBPB-extending microcode not applied!' message precedes the cpu firmware upgade in the linux kernel.
My Asus motherboard got the relevant firmware upgrade (its title is ' AGESA version ComboV2PI 1.2.0.B' - I've no idea what that means, but the 'B' is important) in late October. I applied it about a month later. The messages vanished from the kernel log; there is no perceptible performance change, at least on compiling a linux kernel.
IIUC, the fix nails down an attack vector from userspace, and is complementary to the in-kernel mitigations - I had erroneously expected it to replace some of them, but that's not the case. _________________ Greybeard |
|
Back to top |
|
|
|