Masu bincike daga fasaha mai kyau
Rashin lahani yana faruwa ne ta hanyar kwaro a cikin hardware da Intel CSME firmware, wanda ke cikin boot ROM, wanda ke hana gyara matsalar a cikin na'urorin da aka riga aka yi amfani da su. Saboda kasancewar taga yayin sake kunnawar Intel CSME (misali, lokacin dawowa daga yanayin bacci), ta hanyar yin amfani da DMA yana yiwuwa a rubuta bayanai zuwa ƙwaƙwalwar ajiyar Intel CSME da kuma canza teburin shafi na ƙwaƙwalwar Intel CSME da aka riga aka fara don dakatar da aiwatarwa, dawo da maɓallin dandali, kuma sami iko akan ƙirƙirar maɓallan ɓoyewa don ƙirar Intel CSME. Cikakkun bayanai na amfani da raunin ana shirin buga su daga baya.
Baya ga ciro maɓalli, kuskuren kuma yana ba da damar aiwatar da lamba a matakin gata sifili
Matsaloli masu yiwuwa na samun maɓallin tushen dandamali sun haɗa da goyan baya ga firmware na abubuwan Intel CSME, daidaita tsarin ɓoye bayanan watsa labarai dangane da Intel CSME, da yuwuwar ƙirƙira abubuwan gano EPID (
An lura cewa tushen maɓalli na dandamali ana adana shi a cikin rufaffen tsari kuma don cikakkiyar sasantawa ya zama dole don ƙayyade maɓalli na hardware da aka adana a cikin SKS (Tsarin Maɓallin Maɓalli). Maɓallin da aka ƙayyade ba na musamman ba ne kuma iri ɗaya ne ga kowane ƙarni na kwakwalwan kwamfuta na Intel. Tun da kwaro yana ba da damar aiwatar da lambar a wani mataki kafin a toshe hanyar samar da maɓalli a cikin SKS, ana hasashen cewa ba dade ko ba dade za a tantance wannan maɓallin kayan aikin.
source: budenet.ru