On 05/01/2018 15:01, Greg KH wrote: >> Obviously it lacks a *lot* of processors (especially pre-Haswell). > > I'm running Arch, but it would be nice to know where those microcode > updates came from, given that they aren't on the "official" Intel page > yet :)
Those from November seem way too early to include IBRS/IBPB. Maybe the two from December 3rd, but I wouldn't be 100% sure. So it would be even nicer to know how those microcode updates were tested. (And by the way, the LFENCE change is for variant 1 aka CVE-2017-5753). Paolo