Skip to main content

Linux - CPU Mitigations

Disabling various CPU vulnerability mitigations

This can be done kernel bootable parameters.

Option

Description

mitigations=off
noibrs
noibpb
nopti
nospectre_v2
nospectre_v1
l1tf=off
nospec_store_bypass_disable
no_stf_barrier
mds=off
tsx=on
tsx_async_abort=off
srbds=off
mmio_stale_data=off