Linux Patched For Safe RET Interrupt Vulnerability

The Safe RET Interrupt Vulnerability comes down to a shortcoming in Linux's implementation of its mitigation for SRSO. As such the same AMD Zen 1 through Zen 4 processors are effected. The Safe RET Interrupt Vulnerability could lead to the SRSO mitigation being weakened and/or information disclosure.
Today's AMD Security Bulletin explains:
"An external researcher has reported a potential vulnerability affecting AMD "Zen" architecture processors. The report claims that an attacker executing code on an affected system could inject an interrupt at a precise moment to disrupt “Safe RET,” the default Linux mitigation for Speculative Return Stack Overflow (SRSO), which could potentially weaken that protection and may result in information disclosure. The researcher states that this behavior was demonstrated on "Zen 1" and "Zen 2" processors and suggests that "Zen 3" and "Zen 4" could also be affected, although this has not been demonstrated.
Based on AMD’s current assessment, the reported issue appears to be associated with the Linux implementation of the Safe RET mitigation."
The Safe RET Interrupt Vulnerability was discovered by researcher Daniël Trujillo with the MIT CSAIL.
This merge adds the mitigation for improving the SRSO Linux kernel code.
1 Comment
