Massive security hole in CPU's incoming?Official Meltdown/Spectre Discussion Thread

Page 87 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.
Jul 27, 2020
24,474
17,037
146
Well, we know generally that the third iteration of anything is usually when it comes out of beta so good for AMD.

Intel? They are not gonna learn anything until they get rid of the cancerous people who were hired during BK's era and still damaging Intel with their politics.
 
Reactions: Steltek

gdansk

Diamond Member
Feb 8, 2011
4,117
6,824
136
Last edited:
Reactions: igor_kavinski

DrMrLordX

Lifer
Apr 27, 2000
22,563
12,427
136

Not sure this is much of anything since apparently it's been patched and it required you to pwn the system outside a VM to implement it. Still pretty funny that the team researching the exploit apparently are xkcd readers:

 

moinmoin

Diamond Member
Jun 1, 2017
5,210
8,375
136
Wait does this affect Granite Rapids too?
Would seem so.

"This is also the first time seeing microcode updates for Arrow Lake U / S / HX / H, Granite Rapids AP/SP, and Lunar Lake as part of the Linux CPU microcode collection."
 

Markfw

Moderator Emeritus, Elite Member
May 16, 2002
27,016
15,961
136
Would seem so.

"This is also the first time seeing microcode updates for Arrow Lake U / S / HX / H, Granite Rapids AP/SP, and Lunar Lake as part of the Linux CPU microcode collection."
No mention of AMD in any of that ??
 

coercitiv

Diamond Member
Jan 24, 2014
7,149
16,612
136
No mention of AMD in any of that ??
These vulnerabilities are made possible by the patches made against Spectre for various architectures, the exploits need specific combos of architecture + Spectre patch to work. For now there are no reported vulnerabilities on the AMD side, though we'll have to wait and see if none were found later than the Intel ones.
 
Reactions: Markfw

Markfw

Moderator Emeritus, Elite Member
May 16, 2002
27,016
15,961
136
These vulnerabilities are made possible by the patches made against Spectre for various architectures, the exploits need specific combos of architecture + Spectre patch to work. For now there are no reported vulnerabilities on the AMD side, though we'll have to wait and see if none were found later than the Intel ones.
Just asking. Thanks
 

coercitiv

Diamond Member
Jan 24, 2014
7,149
16,612
136
Do "we" still care about all this?
Yes, "we" care:
It was just yesterday that Training Solo was made public as a new speculative execution CPU vulnerability affecting some Intel and Arm CPUs... Today another one is now public for Intel processors: Branch Privilege Injection.
Intel has developed a microcode update for affected processors and provided us with one to evaluate on Alder Lake. We were able to verify that the microcode update stops our primitives that we use in the paper to detect the vulnerabilities. Our performance evaluation shows up to 2.7% overhead for the microcode mitigation on Alder Lake. We have also evaluated several potential alternative mitigation strategies in software with overheads between 1.6% (Coffee Lake Refresh) and 8.3% (Rocket lake).
Branch Privilege Injection affects all Intel CPUs since the 9th Gen Core CPUs (Coffee Lake Refresh) while the Indirect Branch Prediction Barrier vector goes back to 7th Gen Core (Kaby Lake) processors.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |