Ofufuza ochokera ku Positive Technologies
Chiwopsezocho chimayamba chifukwa cha cholakwika mu Hardware ndi Intel CSME firmware, yomwe ili mu boot ROM, yomwe imalepheretsa vutoli kukhazikitsidwa pazida zomwe zikugwiritsidwa ntchito kale. Chifukwa cha kukhalapo kwa zenera pakuyambiranso kwa Intel CSME (mwachitsanzo, mukayambiranso kugona), kudzera mukusintha kwa DMA ndizotheka kulemba deta ku Intel CSME static memory ndikusintha matebulo okumbukira omwe akhazikitsidwa kale a Intel CSME kuti athetse kuphedwa, pezani kiyi ya pulatifomu, ndikupeza mphamvu pakupanga makiyi obisa a Intel CSME modules. Tsatanetsatane wa kugwiritsiridwa ntchito kwachiwopsezo zakonzedwa kuti zifalitsidwe mtsogolo.
Kuphatikiza pakuchotsa kiyi, cholakwikacho chimalolanso kuti code ichitike pamwayi wa zero
Zotsatira zomwe zingatheke popeza fungulo la mizu ya nsanja ndikuphatikizapo kuthandizira firmware ya zigawo za Intel CSME, kunyengerera kwa makina osungira mauthenga okhudzana ndi Intel CSME, komanso kuthekera kopanga zozindikiritsa za EPID (
Zimadziwika kuti fungulo la pulatifomu limasungidwa m'mawonekedwe obisika ndipo kuti mugwirizane kwathunthu ndikofunikira kudziwa kiyi ya hardware yosungidwa mu SKS (Secure Key Storage). Kiyi yotchulidwayo si yapadera ndipo ndi yofanana pa m'badwo uliwonse wa Intel chipsets. Popeza cholakwikacho chimalola kuti code ichitike panthawi yomwe makina opangira makiyi a SKS atsekeredwa, zimanenedweratu kuti posachedwa kiyi ya Hardware idzadziwika.
Source: opennet.ru