Re: Backport of KPTI to 2.6.32 available

From: Corey Minyard
Date: Thu Jan 11 2018 - 16:11:01 EST


On 01/11/2018 02:32 PM, Greg KH wrote:
On Thu, Jan 11, 2018 at 11:42:38AM -0600, Corey Minyard wrote:
I've completed a backport of KPTI from linux-stable-3.2.y to 2.6.32.71, in
case anyone is interested and wants to avoid all the work I went through.
It's available at:

https://github.com/MontaVista-OpenSourceTechnology/linux-nonlts-secfix.git
linux-2.6.32-secfix

I'll try to keep it up to date with fixes andn with Spectre fixes.
That's crazy, why update it now, when it's missing hundreds, if not
thousands, of other much more severe security fixes? What makes this
one more "urgent" than all of the others?

Anyway, anyone running this branch is getting a very false sense of "I'm
running a fixed kernel!" I strongly recommend it not be used for
anything...

Yes, this is not useful as it is, you must be maintaining the kernel separately. I put
this out as a help to anyone else who might need this. I certainly don't expect
it to be used as-is.

A 3.10 branch will hopefully be coming, too.
Again, why? There's backports for this in the android-common tree if
you really want it. But again, you really do not.

Oh yeah, I guess the android kernel would be the way to go here. Never mind.

-corey