Windows 7 Forums
Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.


Windows 7: AMD on chip vulnerabilities reported by CTS Labs

4 Weeks Ago   #1
Brink

64-bit Windows 10 Pro
 
 
AMD on chip vulnerabilities reported by CTS Labs

Quote:
On March 12, 2018, AMD received a communication from CTS Labs regarding research into security vulnerabilities involving some AMD products. Less than 24 hours later, the research firm went public with its findings. Security and protecting users’ data is of the utmost importance to us at AMD and we have worked rapidly to assess this security research and develop mitigation plans where needed. This is our first public update on this research, and will cover both our technical assessment of the issues as well as planned mitigation actions.

The security issues identified by the third-party researchers are not related to the AMD “Zen” CPU architecture or the Google Project Zero exploits made public Jan. 3, 2018. Instead, these issues are associated with the firmware managing the embedded security control processor in some of our products (AMD Secure Processor) and the chipset used in some socket AM4 and socket TR4 desktop platforms supporting AMD processors.

As described in more detail below, AMD has rapidly completed its assessment and is in the process of developing and staging the deployment of mitigations. It’s important to note that all the issues raised in the research require administrative access to the system, a type of access that effectively grants the user unrestricted access to the system and the right to delete, create or modify any of the folders or files on the computer, as well as change any settings. Any attacker gaining unauthorized administrative access would have a wide range of attacks at their disposal well beyond the exploits identified in this research. Further, all modern operating systems and enterprise-quality hypervisors today have many effective security controls, such as Microsoft Windows Credential Guard in the Windows environment, in place to prevent unauthorized administrative access that would need to be overcome in order to affect these security issues. A useful clarification of the difficulties associated with successfully exploiting these issues can be found in this posting from Trail of Bits, an independent security research firm who were contracted by the third-party researchers to verify their findings.

The security issues identified can be grouped into three major categories. The table below describes the categories, the AMD assessment of impact, and planned actions.

AMD on chip vulnerabilities reported by CTS Labs-amd.png

AMD will provide additional updates on both our analysis of these issues and the related mitigation plans in the coming weeks.

Mark Papermaster,
Senior Vice President and Chief Technology Officer


Source: AMD Corporate: Initial AMD Technical Assessment... | Community




My System SpecsSystem Spec
.
Reply

 AMD on chip vulnerabilities reported by CTS Labs




Thread Tools




Similar help and support threads
Thread Forum
No sound with Creative Labs CT4810
Hi fellow Windows 7 users, Problem: No sound Specs: soundcard; Creative Labs CT4810 cpu; AMD Athlon 64 3000+ memory; 1.5gb graphics; ATI Radeon xxxx series
Sound & Audio
No Sounds/Creative Labs X-Fi....Again
I had to do a reinstall/image restore and suddenly I have no sound when using my Creative X-Fi card. I tried driver updates, cleaning out ALL of my creative drivers then reinstalling them, and the 2.5 support pack I read about in another thread and nothing's worked. I running Windows X64, any...
Sound & Audio
Latest NSS Labs Testing
I just finished reading the latest results of NSS Labs Consumer Endpoint Protection and was quite shocked by their results. It goes to show that one should never rely solely on one set of results when looking at ant-malware products. Here's a snip of their 17 day recurring test.
System Security
Dell Creative Labs Webcam
Since upgrading to Windows 7 I'm encountering a problem with my Dell 1525's built in webcam. I installed the old Vista drivers and the Webcam Manager, using those I can record video, take pictures, etc just as I could in XP. However in XP I was able to use the microphone built into the webcam...
Sound & Audio
Windows 7 Labs @ PDC
More...
News


Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd

All times are GMT -5. The time now is 01:32.
Twitter Facebook Google+ Seven Forums iOS App Seven Forums Android App