=================================================================== RCS file: /cvsrepo/anoncvs/cvs/www/73.html,v retrieving revision 1.51 retrieving revision 1.52 diff -u -r1.51 -r1.52 --- www/73.html 2023/04/08 01:52:39 1.51 +++ www/73.html 2023/04/08 10:56:51 1.52 @@ -107,9 +107,6 @@ href="https://man.openbsd.org/getnsecruntime.9">getnsecruntime(9). Offers fast access to the system runtime clock at the cost of precision. -
  • Add detection for Spectre-BHB Branch History Injection - vulnerability related CLRBHB, ECBHB and CSV2_3/HCXT feature bits. -
  • Prevent detaching ("bioctl -d detach") of a boot volume on a RAID managed by bioctl(8). @@ -118,8 +115,6 @@ avoids accidentally mapping memory regions that should not be mapped (i.e. secure memory) as all mapped memory can be accessed speculatively. -
  • Added arm64 detection of EPAN feature bit. Enhanced Privileged Access Never - (EPAN) allows Privileged Access Never to be used with Execute-only mappings.
  • On arm64, add a machdep.lidaction sysctl(8) for aplsmc(4) Apple Silicon