ืคื’ื™ืขื•ื™ื•ืช ื‘ืงื•ืฉื—ื” UEFI ื”ืžื‘ื•ืกืกืช ืขืœ ืžืกื’ืจืช InsydeH2O, ื”ืžืืคืฉืจืช ื‘ื™ืฆื•ืข ืงื•ื“ ื‘ืจืžืช SMM

ื‘ืžืกื’ืจืช InsydeH2O, ื”ืžืฉืžืฉืช ื™ืฆืจื ื™ื ืจื‘ื™ื ืœื™ืฆื™ืจืช ืงื•ืฉื—ืช UEFI ืขื‘ื•ืจ ื”ืฆื™ื•ื“ ืฉืœื”ื (ื”ื™ื™ืฉื•ื ื”ื ืคื•ืฅ ื‘ื™ื•ืชืจ ืฉืœ UEFI BIOS), ื–ื•ื”ื• 23 ื ืงื•ื“ื•ืช ืชื•ืจืคื” ื”ืžืืคืฉืจื•ืช ื‘ื™ืฆื•ืข ืงื•ื“ ื‘ืจืžืช SMM (ืžืฆื‘ ื ื™ื”ื•ืœ ืžืขืจื›ืช), ื”ื›ื•ืœืœืช ืขื“ื™ืคื•ืช ื’ื‘ื•ื”ื” ื™ื•ืชืจ (ืฆืœืฆื•ืœ -2) ืžืžืฆื‘ ื”-Hypervisor ื•ื˜ื‘ืขืช ืืคืก ืฉืœ ื”ื’ื ื”, ื•ื‘ืขืœืช ื’ื™ืฉื” ื‘ืœืชื™ ืžื•ื’ื‘ืœืช ืœื›ืœ ื”ื–ื™ื›ืจื•ืŸ. ื”ื‘ืขื™ื” ืžืฉืคื™ืขื” ืขืœ ืงื•ืฉื—ืช UEFI ื”ืžืฉืžืฉืช ื™ืฆืจื ื™ื ื›ืžื• Fujitsu, Siemens, Dell, HP, HPE, Lenovo, Microsoft, Intel ื•-Bull Atos.

ื ื™ืฆื•ืœ ื ืงื•ื“ื•ืช ืชื•ืจืคื” ืžื—ื™ื™ื‘ ื’ื™ืฉื” ืžืงื•ืžื™ืช ืขื ื–ื›ื•ื™ื•ืช ืžื ื”ืœ, ืžื” ืฉื”ื•ืคืš ืืช ื”ื ื•ืฉืื™ื ืœืคื•ืคื•ืœืจื™ื™ื ื›ื ืงื•ื“ื•ืช ืชื•ืจืคื” ืžื”ื“ืจื’ ื”ืฉื ื™, ื‘ืฉื™ืžื•ืฉ ืœืื—ืจ ื ื™ืฆื•ืœ ื ืงื•ื“ื•ืช ืชื•ืจืคื” ืื—ืจื•ืช ื‘ืžืขืจื›ืช ืื• ืฉื™ืžื•ืฉ ื‘ืฉื™ื˜ื•ืช ื”ื ื“ืกื” ื—ื‘ืจืชื™ืช. ื’ื™ืฉื” ื‘ืจืžืช SMM ืžืืคืฉืจืช ืœืš ืœื‘ืฆืข ืงื•ื“ ื‘ืจืžื” ืฉืื™ื ื” ื ืฉืœื˜ืช ืขืœ ื™ื“ื™ ืžืขืจื›ืช ื”ื”ืคืขืœื”, ืืฉืจ ื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘ื• ื›ื“ื™ ืœืฉื ื•ืช ืงื•ืฉื—ื” ื•ืœื”ืฉืื™ืจ ืงื•ื“ ื–ื“ื•ื ื™ ืื• rootkits ืžื•ืกืชืจื™ื ื‘-SPI Flash ืฉืื™ื ื ืžื–ื•ื”ื™ื ืขืœ ื™ื“ื™ ืžืขืจื›ืช ื”ื”ืคืขืœื”, ื›ืžื• ื’ื ืœื ื˜ืจืœ ืื™ืžื•ืช ื‘ืฉืœื‘ ื”ืืชื—ื•ืœ (UEFI Secure Boot , Intel BootGuard) ื•ื”ืชืงืคื•ืช ืขืœ ื”ื™ืคืจื•ื•ื™ื–ื•ืจื™ื ื›ื“ื™ ืœืขืงื•ืฃ ืžื ื’ื ื•ื ื™ื ืœื‘ื“ื™ืงืช ืชืงื™ื ื•ืชืŸ ืฉืœ ืกื‘ื™ื‘ื•ืช ื•ื™ืจื˜ื•ืืœื™ื•ืช.

ืคื’ื™ืขื•ื™ื•ืช ื‘ืงื•ืฉื—ื” UEFI ื”ืžื‘ื•ืกืกืช ืขืœ ืžืกื’ืจืช InsydeH2O, ื”ืžืืคืฉืจืช ื‘ื™ืฆื•ืข ืงื•ื“ ื‘ืจืžืช SMM

ื ื™ืฆื•ืœ ื ืงื•ื“ื•ืช ืชื•ืจืคื” ื™ื›ื•ืœ ืœื”ืชื‘ืฆืข ืžืžืขืจื›ืช ื”ื”ืคืขืœื” ื‘ืืžืฆืขื•ืช ืžื˜ืคืœื™ SMI (ืžืขืจื›ืช ื ื™ื”ื•ืœ ืคืกื™ืงื”) ืœื ืžืื•ืžืชื™ื, ื•ื›ืŸ ื‘ืฉืœื‘ ื”ื‘ื™ืฆื•ืข ืžืจืืฉ ืฉืœ ืžืขืจื›ืช ื”ื”ืคืขืœื” ื‘ืฉืœื‘ื™ื ื”ืจืืฉื•ื ื™ื ืฉืœ ื”ืืชื—ื•ืœ ืื• ื—ื–ืจื” ืžืžืฆื‘ ืฉื™ื ื”. ื›ืœ ื”ืคื’ื™ืขื•ืช ื ื’ืจืžื•ืช ืžื‘ืขื™ื•ืช ื–ื™ื›ืจื•ืŸ ื•ืžื—ื•ืœืงื•ืช ืœืฉืœื•ืฉ ืงื˜ื’ื•ืจื™ื•ืช:

  • SMM Callout - ื‘ื™ืฆื•ืข ื”ืงื•ื“ ืฉืœืš ืขื ื–ื›ื•ื™ื•ืช SMM ืขืœ ื™ื“ื™ ื”ืคื ื™ื™ืช ื”ื‘ื™ืฆื•ืข ืฉืœ ืžื˜ืคืœื™ ืคืกื™ืงื•ืช SWSMI ืœืงื•ื“ ืžื—ื•ืฅ ืœ-SMRAM;
  • ื”ืฉื—ืชืช ื–ื™ื›ืจื•ืŸ ื”ืžืืคืฉืจืช ืœืชื•ืงืฃ ืœื›ืชื•ื‘ ืืช ื”ื ืชื•ื ื™ื ืฉืœื• ืœ-SMRAM, ืื–ื•ืจ ื–ื™ื›ืจื•ืŸ ืžื‘ื•ื“ื“ ืžื™ื•ื—ื“ ื‘ื• ืžื‘ื•ืฆืข ืงื•ื“ ืขื ื–ื›ื•ื™ื•ืช SMM.
  • ืคื’ื™ืขื” ื‘ื–ื™ื›ืจื•ืŸ ื‘ืงื•ื“ ื”ืคื•ืขืœ ื‘ืจืžืช DXE (Driver eXecution Environment).

ื›ื“ื™ ืœื”ื“ื’ื™ื ืืช ื”ืขืงืจื•ื ื•ืช ืฉืœ ืืจื’ื•ืŸ ื”ืชืงืคื”, ืคื•ืจืกืžื” ื“ื•ื’ืžื” ืœื ื™ืฆื•ืœ, ื”ืžืืคืฉืจ, ื‘ืืžืฆืขื•ืช ื”ืชืงืคื” ืžื˜ื‘ืขืช ื”ื”ื’ื ื” ื”ืฉืœื™ืฉื™ืช ืื• ื”ืืคืกื™ืช, ืœืงื‘ืœ ื’ื™ืฉื” ืœ-DXE Runtime UEFI ื•ืœื”ืคืขื™ืœ ืืช ื”ืงื•ื“ ืฉืœืš. ื”ื ื™ืฆื•ืœ ืžืคืขื™ืœ ืžื ื™ืคื•ืœืฆื™ื•ืช ืขืœ ื”ืฆืคืช ืžื—ืกื ื™ืช (CVE-2021-42059) ื‘ืžื ื”ืœ ื”ื”ืชืงืŸ ืฉืœ UEFI DXE. ื‘ืžื”ืœืš ื”ื”ืชืงืคื”, ื”ืชื•ืงืฃ ื™ื›ื•ืœ ืœืžืงื ืืช ื”ืงื•ื“ ืฉืœื• ื‘ืžื ื”ืœ ื”ื”ืชืงืŸ DXE, ืฉื ืฉืืจ ืคืขื™ืœ ืœืื—ืจ ื”ืคืขืœื” ืžื—ื“ืฉ ืฉืœ ืžืขืจื›ืช ื”ื”ืคืขืœื”, ืื• ืœื‘ืฆืข ืฉื™ื ื•ื™ื™ื ื‘ืื–ื•ืจ ื”-NVRAM ืฉืœ ื”-SPI Flash. ื‘ืžื”ืœืš ื”ื‘ื™ืฆื•ืข, ืงื•ื“ ื”ืชื•ืงืฃ ื™ื›ื•ืœ ืœื‘ืฆืข ืฉื™ื ื•ื™ื™ื ื‘ืื–ื•ืจื™ ื–ื™ื›ืจื•ืŸ ืžื•ืขื“ืคื™ื, ืœืฉื ื•ืช ืฉื™ืจื•ืชื™ EFI Runtime ื•ืœื”ืฉืคื™ืข ืขืœ ืชื”ืœื™ืš ื”ืืชื—ื•ืœ.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”