Description: Mitigations for the native BHI hardware vulnerabilty References: https://vusec.net/projects/native-bhi https://download.vusec.net/papers/inspectre_sec24.pdf https://github.com/vusec/inspectre-gadget https://vusec.github.io/inspectre-gadget/ NOTE: https://www.intel.com/content/www/us/en/developer/articles/technical/software-security-guidance/technical-documentation/branch-history-injection.html Notes: Bugs: upstream: released (6.9-rc4) [0cd01ac5dcb1e18eb18df0f0d05b5de76522a437, 1e3ad78334a69b36e107232e337f9d693dcc9df2, 7390db8aea0d64e9deb28b8e1ce716f5020c7ee5, 0f4a837615ff925ba62648d280a861adf1582df7, be482ff9500999f56093738f9219bbabc729d163, ec9404e40e8f36421a2b66ecb76dc2209fe7f3ef, 95a6ccbdc7199a14b71ad8901cb788ba7fb5167b, ed2e8d49b54d677f3123668a21a57822d679651f] 6.8-upstream-stable: released (6.8.5) [33257e28bf6d8691a040b7f1f5cd13997539f717, 8f51637712e4da5be410a1666f8aee0d86eef898, aec26bd00ed73c21f8f98b3e1667bc4cf016a9cf, a96b54b4b839536b8ffa81ec0b831d3106243a23, a39bfa52671beb750fa2e1c7400469cde9c8ff9f, 2bf604dc494f9f747eee62e7d46b2c179aa243dc, 15d6de3746ed724b93aca6c16e1ada68d379cb48, 9634ee70691a868737d1e665e3afa5a76f04d523] 6.7-upstream-stable: needed 6.6-upstream-stable: released (6.6.26) [108feca9e47df1bed26ac7b04306587d9ebccda3, eb0f175b34287f886019b86ac2f410df331d2c34, eb36b0dce2138581bc6b5e39d0273cb4c96ded81, c6e3d590d0514612d96c572cba66ae0cb4b505a2, 118794d0a572c7a8514dc774e68b59d41857b81c, d414b401f9539858574a19af4ffc0fc0d53bfb8f, 1c42ff893a8fb802dd90ca06af928826fdf0d16b, cb238e95ee72a64e53a4f93181aae634cc0d3be6, 6d9ef0c36980ef051cb55aeefb6438429e37268a] 6.1-upstream-stable: released (6.1.85) [fd52c0397b53ebcd4931981b3bc38f3b760b74df, 74fcb181772e5b8a8f1244c7393c56ae6d03c330, 07dbb10f153f483e8249acebdffedf922e2ec2e1, 29c50bb6fbe4598d313ddb7ddb183e8b3d7bdf80, 42196bdec0824900b02bc21e02e9bb139197ca14, bb8384b6dfbc49be230071d1e844a8741982b1ec, 43704e993ae54b8caf821501229dd2534ecb0e56, 3e4283b77107d1105a378859eb196e3ba5661270, e21838dfd0844b093a92d4cdd4db836b473c912d] 5.10-upstream-stable: needed 4.19-upstream-stable: needed sid: needed 6.1-bookworm-security: released (6.1.85-1) 5.10-bullseye-security: needed 4.19-buster-security: needed