\sphinx.addnodesdocument)}( rawsourcechildren]( translations LanguagesNode)}(hhh](h pending_xref)}(hhh]docutils.nodesTextChinese (Simplified)}parenthsba attributes}(ids]classes]names]dupnames]backrefs] refdomainstdreftypedoc reftargethjyhhubh)}(hIf used, these options will disable AVX use by turning off XSAVE YMM support. However, the processor will still enumerate AVX support. Userspace that does not follow proper AVX enumeration to check both AVX *and* XSAVE YMM support will break.h](hIf used, these options will disable AVX use by turning off XSAVE YMM support. However, the processor will still enumerate AVX support. Userspace that does not follow proper AVX enumeration to check both AVX }(hj.hhhNhNubhemphasis)}(h*and*h]hand}(hj8hhhNhNubah}(h]h ]h"]h$]h&]uh1j6hj.ubh XSAVE YMM support will break.}(hj.hhhNhNubeh}(h]h ]h"]h$]h&]uh1hhhhKBhjyhhubeh}(h]mitigation-mechanismah ]h"]mitigation mechanismah$]h&]uh1hhhhhhhhK/ubh)}(hhh](h)}(h-Mitigation control on the kernel command lineh]h-Mitigation control on the kernel command line}(hj[hhhNhNubah}(h]h ]h"]h$]h&]uh1hhjXhhhhhKHubh)}(hXxThe mitigation can be disabled by setting "gather_data_sampling=off" or "mitigations=off" on the kernel command line. Not specifying either will default to the mitigation being enabled. Specifying "gather_data_sampling=force" will use the microcode mitigation when available or disable AVX on affected systems where the microcode hasn't been updated to include the mitigation.h]hXThe mitigation can be disabled by setting “gather_data_sampling=off” or “mitigations=off” on the kernel command line. Not specifying either will default to the mitigation being enabled. Specifying “gather_data_sampling=force” will use the microcode mitigation when available or disable AVX on affected systems where the microcode hasn’t been updated to include the mitigation.}(hjihhhNhNubah}(h]h ]h"]h$]h&]uh1hhhhKIhjXhhubeh}(h]-mitigation-control-on-the-kernel-command-lineah ]h"]-mitigation control on the kernel command lineah$]h&]uh1hhhhhhhhKHubh)}(hhh](h)}(hGDS System Informationh]hGDS System Information}(hjhhhNhNubah}(h]h ]h"]h$]h&]uh1hhjhhhhhKPubh)}(h}The kernel provides vulnerability status information through sysfs. For GDS this can be accessed by the following sysfs file:h]h}The kernel provides vulnerability status information through sysfs. For GDS this can be accessed by the following sysfs file:}(hjhhhNhNubah}(h]h ]h"]h$]h&]uh1hhhhKQhjhhubh)}(h