diff --git a/README.md b/README.md index 64cbaa6..5bf4053 100644 --- a/README.md +++ b/README.md @@ -53,6 +53,8 @@ vulnerabilities. * All mitigations for the MDS vulnerability are enabled. +* Enables mitigations for the L1TF (L1 Terminal Fault) vulnerability. + * A systemd service clears System.map on boot as these contain kernel symbols that could be useful to an attacker. /etc/kernel/postinst.d/30_remove-system-map