speed47 / spectre-meltdown-checker

Reptar, Downfall, Zenbleed, ZombieLoad, RIDL, Fallout, Foreshadow, Spectre, Meltdown vulnerability/mitigation checker for Linux & BSD
3.84k stars 477 forks source link

CVE-2023-20593: False positives in xen environment for dom0 and domU #488

Open satheesh-kk opened 5 months ago

satheesh-kk commented 5 months ago

Hi Team Has the checker script taken care for zenbleed(CVE-2023-20593) when system running on xen environment. We have ucode fix in BIOS and the meltdown checker is passing/clearing in BareMetal ubuntu, its failing in Dom0-Ubuntu and DomU-Ubuntu. Which is false positive given the fact its passing in Baremetal.

Attached the both Dom0 and Baremetal output scripts.

Additional Details

Xen Dom0 PVH mode Xen DomU HVM mode

Meldown_Check_Logs_Dom0_Ubuntu.txt Meldown_Check_Logs_BareMetal_Ubuntu.txt