)]}'
{
  "commit": "aeb8eaef4ab8de2ae772efb5fa98668cb22f4a2b",
  "tree": "7da7d127325d1131b7ac9200c05bbb9c399d6bab",
  "parents": [
    "40823d50fbb11ad9f3a582c75433bb7adecd553e"
  ],
  "author": {
    "name": "Joerg Roedel",
    "email": "jroedel@suse.de",
    "time": "Wed Jun 21 17:42:42 2023 +0200"
  },
  "committer": {
    "name": "He Gao",
    "email": "hegao@google.com",
    "time": "Thu Nov 09 21:55:44 2023 +0000"
  },
  "message": "x86/sev: Check IOBM for IOIO exceptions from user-space\n\nUpstream commit: b9cb9c45583b911e0db71d09caa6b56469eb2bdf\n\nCheck the IO permission bitmap (if present) before emulating IOIO #VC\nexceptions for user-space. These permissions are checked by hardware\nalready before the #VC is raised, but due to the VC-handler decoding\nrace it needs to be checked again in software.\n\nCherry-pick to release branch to fix CVE-2023-46813.\n\nBUG\u003db/309761155\nTEST\u003dpresubmit\nRELEASE_NOTE\u003dNone\n\nFixes: 25189d08e516 (\"x86/sev-es: Add support for handling IOIO exceptions\")\nReported-by: Tom Dohrmann \u003cerbse.13@gmx.de\u003e\nChange-Id: Icdd55335912d0aa3a8179cdefa58943e580eb4c4\nSigned-off-by: Joerg Roedel \u003cjroedel@suse.de\u003e\nSigned-off-by: Borislav Petkov (AMD) \u003cbp@alien8.de\u003e\nTested-by: Tom Dohrmann \u003cerbse.13@gmx.de\u003e\nSigned-off-by: Greg Kroah-Hartman \u003cgregkh@linuxfoundation.org\u003e\nReviewed-on: https://cos-review.googlesource.com/c/third_party/kernel/+/60998\nReviewed-by: Nandhini Rengaraj \u003cnrengaraj@google.com\u003e\nTested-by: Cusky Presubmit Bot \u003cpresubmit@cos-infra-prod.iam.gserviceaccount.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "52f989f6acc281f95815bc76e0976348b5b8f635",
      "old_mode": 33188,
      "old_path": "arch/x86/boot/compressed/sev.c",
      "new_id": "c9314f40b360c3c351239f3a137bf6bb915bc78e",
      "new_mode": 33188,
      "new_path": "arch/x86/boot/compressed/sev.c"
    },
    {
      "type": "modify",
      "old_id": "e844b1856d2932051edab6ea0b4b030b37815da5",
      "old_mode": 33188,
      "old_path": "arch/x86/kernel/sev-shared.c",
      "new_id": "eada67766f614d94e6ae741e1426c7e10183ae54",
      "new_mode": 33188,
      "new_path": "arch/x86/kernel/sev-shared.c"
    },
    {
      "type": "modify",
      "old_id": "4066bcdc68d38b646e512064bcc236731b9ed404",
      "old_mode": 33188,
      "old_path": "arch/x86/kernel/sev.c",
      "new_id": "dfcbe0db9540b2926880358c3f76acac0ba3c97b",
      "new_mode": 33188,
      "new_path": "arch/x86/kernel/sev.c"
    }
  ]
}
