Re: Xen PV dom0 "tried to execute NX-protected page" when running nested in KVM - 6.15 regression

From: Andrew Cooper
Date: Thu Jun 19 2025 - 07:31:34 EST


On 19/06/2025 12:24 pm, Marek Marczykowski-Górecki wrote:
> Hi,
>
> With Linux 6.15.2 I got a crash like below. It worked fine with Linux
> 6.14.11. Furthermore, the failure seems to be hardware-dependent. It
> happens when running on Intel Core i9-13900H, but does not happen when
> running on Intel Xeon E5-2620v4 (in both cases QEMU uses -cpu host).

Yes, it's a known regression in Linux's ITS / CVE-2024-28956 patches.

https://lore.kernel.org/lkml/20250603111446.2609381-1-rppt@xxxxxxxxxx/

It's hardware-dependent because so is Indirect Target Selection.

~Andrew