Patch "x86/speculation: Use IBRS if available before calling into firmware" has been added to the 4.14-stable tree