diff options
| author | 2025-12-22 15:46:46 +0100 | |
|---|---|---|
| committer | 2026-08-30 21:32:34 -0600 | |
| commit | 1b48c13075829ee4961feeabd816dac1c9111959 (patch) | |
| tree | 67bd75b491382917d2f5071fbbbb15595ebf062d /Documentation/core-api/kho | |
| parent | Linux 7.3-rc1 (diff) | |
It was found that AWS SEV-SNP enabled instances are not able to boot with
commit 81256a50aa0f ("x86/mm: Make memremap(MEMREMAP_WB) map memory as
encrypted by default") applied and the reason seems to be the vmgenid
device which requires unencrypted writeable memory.
A similar problem was previously fixed in DRM with commit
7dfede7d7edd ("drm/vmwgfx: Fix guests running with TDX/SEV").
Note, trusting vmgenid device in a Confidential VM is questionable: the
malicious host may intentionally avoid notifying the guest when a copy is
created.
Fixes: 81256a50aa0f ("x86/mm: Make memremap(MEMREMAP_WB) map memory as encrypted by default")
Signed-off-by: Vitaly Kuznetsov <vkuznets@redhat.com>
Cc: stable@vger.kernel.org # 6.15+
Signed-off-by: Jason A. Donenfeld <Jason@zx2c4.com>
Diffstat (limited to 'Documentation/core-api/kho')
0 files changed, 0 insertions, 0 deletions
