Re: [RFC PATCH 07/56] x86/bugs: Reset spectre_v2_user mitigations

From: Borislav Petkov

Date: Thu Dec 04 2025 - 10:08:03 EST


On Wed, Dec 03, 2025 at 08:14:08PM +0000, Kaplan, David wrote:
> Yeah, I think that's worth considering. I think for the get functions (e.g.
> ib_prctl_get()) they can return whatever the current mitigation status is.
> But for the set functions (e.g. ib_prctl_set()) would stop returning EPERM
> due to system-wide mitigation settings.
>
> In other words, maybe something like this? (And similar for the other ones
> like ssb_prctl_seg)

Looks about right to me.

Thx.

--
Regards/Gruss,
Boris.

https://people.kernel.org/tglx/notes-about-netiquette