home.social

#spectrev2 — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #spectrev2, aggregated by home.social.

fetched live
  1. New #SpectreV2 attack impacts #Linux systems on #Intel #CPU
    Researchers have demonstrated the "first native #Spectre v2 #exploit" for a new #speculativeexecution side-channel flaw that impacts Linux systems running on many modern Intel processors.
    Current mitigations are designed around isolating exploitable gadgets to remove the attack surface. Researchers, through custom 'InSpectre Gadget' analysis tool, demonstrated that exploitable gadgets in the Linux kernel remain.
    bleepingcomputer.com/news/secu

  2. New #SpectreV2 attack impacts #Linux systems on #Intel #CPU
    Researchers have demonstrated the "first native #Spectre v2 #exploit" for a new #speculativeexecution side-channel flaw that impacts Linux systems running on many modern Intel processors.
    Current mitigations are designed around isolating exploitable gadgets to remove the attack surface. Researchers, through custom 'InSpectre Gadget' analysis tool, demonstrated that exploitable gadgets in the Linux kernel remain.
    bleepingcomputer.com/news/secu

  3. Just merged into mainline [edit: and various newly released stable/longterm like 6.1.12]:

    ```Certain processors are vulnerable to a cross-thread return address predictions bug. […] […] These patches introduce a KVM module parameter that, if set, will prevent the user from disabling the HLT, MWAIT and CSTATE exits```

    Merge: git.kernel.org/pub/scm/linux/k Docs: git.kernel.org/pub/scm/linux/k

    CVE-2022-27672 – Cross-Thread Return Address Predictions: cve.mitre.org/cgi-bin/cvename.

  4. Die Prozessorhersteller AMD und Intel stopfen im November einige Sicherheitslücken. Lenovo korrigiert sicherheitsrelevante Fehler in BIOS und Software.
    Patchday: AMD, Intel und Lenovo müssen Sicherheitslecks abdichten
  5. Die Prozessorhersteller AMD und Intel stopfen im November einige Sicherheitslücken. Lenovo korrigiert sicherheitsrelevante Fehler in BIOS und Software.
    Patchday: AMD, Intel und Lenovo müssen Sicherheitslecks abdichten