A patch heading to the mainline Linux kernel enables the IBPB-on-Entry security feature for AMD SEV-SNP guest VMs. Supported by AMD EPYC Zen 5 processors, IBPB-on-Entry forces an Indirect Branch Predictor Barrier when entering a guest VM, helping prevent speculative execution attacks. The feature was previously masked as a

2m read time From phoronix.com
Post cover image

Sort: