Kernel memory leaking Intel processor design flaw

    Kernel memory leaking Intel processor design flaw


    Last Updated: 04 Jan 2018 at 16:42
    A fundamental design flaw in Intel's processor chips has forced a significant redesign of the Linux and Windows kernels to defang the chip-level security bug.

    Programmers are scrambling to overhaul the open-source Linux kernel's virtual memory system. Meanwhile, Microsoft is expected to publicly introduce the necessary changes to its Windows operating system in an upcoming Patch Tuesday: these changes were seeded to beta testers running fast-ring Windows Insider builds in November and December.

    Crucially, these updates to both Linux and Windows will incur a performance hit on Intel products. The effects are still being benchmarked, however we're looking at a ballpark figure of five to 30 percent slow down, depending on the task and the processor model. More recent Intel chips have features – such as PCID – to reduce the performance hit. Your mileage may vary.


    Similar operating systems, such as Apple's 64-bit macOS, will also need to be updated – the flaw is in the Intel x86-64 hardware, and it appears a microcode update can't address it. It has to be fixed in software at the OS level, or go buy a new processor without the design blunder.

    Details of the vulnerability within Intel's silicon are under wraps: an embargo on the specifics is due to lift early this month, perhaps in time for Microsoft's Patch Tuesday next week. Indeed, patches for the Linux kernel are available for all to see but comments in the source code have been redacted to obfuscate the issue.

    However, some details of the flaw have surfaced, and so this is what we know.


    Read more: 'Kernel memory leaking' Intel processor design flaw forces Linux, Windows redesign - The Register


    See also:
    Brink's Avatar Posted By: Brink
    02 Jan 2018



  1. Posts : 1,030
    Linux Mint / XP / Win7 Home, Pro, Ultimate / Win8.1 / Win10
       #1

    Follow the money.

    "Intel's CEO Just Sold a Lot of Stock" headline from Motley Fool

    Indeed, as explained here, insider selling isn't always a red flag.

    However, there were two transactions that Krzanich reported in that Form 4 filing that I thought were more notable than typical stock option exercises and subsequent share sales. Let's take a closer look.

    https://www.fool.com/investing/2017/...-of-stock.aspx
      My Computer


  2. Posts : 1,030
    Linux Mint / XP / Win7 Home, Pro, Ultimate / Win8.1 / Win10
       #2

    "Details of the vulnerability within Intel's silicon are under wraps..." - not any more as crack PoC has been posted. Sneak peek on Twitter by @Brainsmoke:

      My Computer


  3. Posts : 72,041
    64-bit Windows 11 Pro for Workstations
    Thread Starter
       #3

    Intel and other technology companies have been made aware of new security research describing software analysis methods that, when used for malicious purposes, have the potential to improperly gather sensitive data from computing devices that are operating as designed. Intel believes these exploits do not have the potential to corrupt, modify or delete data.

    Recent reports that these exploits are caused by a “bug” or a “flaw” and are unique to Intel products are incorrect. Based on the analysis to date, many types of computing devices — with many different vendors’ processors and operating systems — are susceptible to these exploits.

    Intel is committed to product and customer security and is working closely with many other technology companies, including AMD, ARM Holdings and several operating system vendors, to develop an industry-wide approach to resolve this issue promptly and constructively. Intel has begun providing software and firmware updates to mitigate these exploits. Contrary to some reports, any performance impacts are workload-dependent, and, for the average computer user, should not be significant and will be mitigated over time.

    Intel is committed to the industry best practice of responsible disclosure of potential security issues, which is why Intel and other vendors had planned to disclose this issue next week when more software and firmware updates will be available. However, Intel is making this statement today because of the current inaccurate media reports.

    Check with your operating system vendor or system manufacturer and apply any available updates as soon as they are available. Following good security practices that protect against malware in general will also help protect against possible exploitation until updates can be applied.

    Intel believes its products are the most secure in the world and that, with the support of its partners, the current solutions to this issue provide the best possible security for its customers.


    Source: https://newsroom.intel.com/news/inte...arch-findings/
      My Computer


  4. Posts : 124
    win7hp64
       #4

    The way I understand it, CPU is doing predictive branching prefetch without checking permissions, so code will run faster, but also wide open to hacks. This is probably going all the way back to original Core duo and I have hard time believing this wasn't done on purpose to beat competition. The fix will not affect speed of consumer pcs playing games, video or browsing internet, that much, but could potentially slow down servers by up to 30% or more, depending on code. Intel stock dropped more than 3% (about 6 billion give or take) and AMD went up over 5%. If Intel's CEO selling all his Intel stock (that he legally could sell obeying bylaws) is not insider trading, I don't know what is.
      My Computer


  5. Posts : 25,847
    Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
       #5

    I watch a lot of news channels and I have not seen anything about Intel's CEO selling all of his Intel shares.

    From post #5
    If Intel's CEO selling all his Intel stock (that he legally could sell obeying bylaws) is not insider trading, I don't know what is.
    The market went up over 25,000 today and I believe if the CEO of Intel sold all his stock somebody would of reported it on some of the business channels.

    Jack
      My Computer


  6. Posts : 124
    win7hp64
       #6

    https://www.cnbc.com/2018/01/04/inte...ity-flaws.html
    Here is one.
    He can't sell all his shares, bylaws require him to keep 250k shares, so he sold everything above that, more than 100k. He did file this sale with SEC, still he sold shares knowing something most people didn't.
    Actually there was gag order on this bug, until the fix is out and I think this was discovered by security people sometime this summer or something if I'm not mistaken
      My Computer


  7. Posts : 25,847
    Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
       #7

    I just got KB4056892 for my Windows 10 system.
    I'm understanding the 'KB' is suppose to take care of the problem.
    It downloaded and installed in 4 minutes.
    I restarted twice and things seem to be okay.

    Jack
      My Computer


  8. Posts : 72,041
    64-bit Windows 11 Pro for Workstations
    Thread Starter
       #8
      My Computer


  9. Posts : 124
    win7hp64
       #9

    I just checked and no security updates for my system at all, actually no updates since 12/23. Maybe need to download manually.
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 00:24.
Find Us