FreeBSD mds mitigation.

damian at damianek.be damian at damianek.be
Wed Jul 10 07:07:09 UTC 2019


Hello

FreeBSD 11.2-RELEASE-p11
CPU: Intel(R) Xeon(R) CPU E5-2640 v3 @ 2.60GHz (2594.05-MHz K8-class CPU)

sysctl hw.mds_disable was set to 3 (Automatic VERW or Software selection),
HT disabled in BIOS, and i install manually latest CPU microcode from
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/

I wonder why hw.mds_disable_state shows
hw.mds_disable_state: software Broadwell
instead VERW?

sysctl hw.mds_disable=1 causes hw.mds_disable_state: VERW

These automatic selection works correctly?

-- dsk
damian at damianek.be


More information about the freebsd-security mailing list