Kev ua haujlwm loj heev hauv cov ntsiav 5.19 tshwm sim los ntawm kev tiv thaiv Retbleed

Ib tus kws tshaj lij los ntawm VMware tau coj mus rau qhov mloog ntawm Linux ntsiav kev txhim kho zej zog qhov kev poob qis hauv kev ua haujlwm thaum siv Linux ntsiav 5.19. Kev sim ntawm lub tshuab virtual nrog cov ntsiav 5.19 nyob ib puag ncig los ntawm VMware ESXi hypervisor tau pom qhov txo qis hauv kev ua haujlwm ntawm 70%, kev ua haujlwm hauv network los ntawm 30%, thiab kev ua haujlwm khaws cia los ntawm 13%, piv rau tib qhov kev teeb tsa raws li kernel 5.18.

Yog vim li cas rau qhov txo qis hauv kev ua tau zoo yog qhov hloov pauv hauv kev tiv thaiv kev tawm tsam ntawm Spectre v2 chav kawm (spectre_v2 = ibrs), ua raws li kev txuas ntxiv ntawm IBRS (Txhim Kho Indirect Branch Restricted Speculation) cov lus qhia, uas tso cai rau kev yoog raws kev tso cai thiab cuam tshuam kev xav. Kev ua tiav cov lus qhia thaum lub sijhawm ua haujlwm cuam tshuam thiab kev hu xov tooj thiab cov ntsiab lus hloov pauv. Kev tiv thaiv suav nrog los thaiv qhov tsis ntev los no pom Retbleed qhov tsis zoo nyob rau hauv cov txheej txheem rau kev ua tiav ntawm kev tsis ncaj ncees CPU hloov pauv, uas tso cai rau koj rho tawm cov ntaub ntawv los ntawm cov cim nco lossis teeb tsa kev tawm tsam ntawm tus tswv system los ntawm cov tshuab virtual. Tom qab kaw kev tiv thaiv (spectre_v2=off), kev ua haujlwm rov qab mus rau nws qib dhau los.

Tau qhov twg los: opennet.ru

Ntxiv ib saib