you need to disable multithreading using "nosmt" to be fully safe against this and other attacks. or use mitigations=auto,nosmt on the kernel bootline.