ARM iri kudonha: kusagadzikana kwakasarudzika kwekurwiswa kwekufungidzira komputa kwakawanikwa.

Kune ma processors pamhando dzakasiyana dzeArmv8-A (Cortex-A) zvivakwa akawana yayo yakasarudzika kusagadzikana kune parutivi-chiteshi kurwisa uchishandisa yekufungidzira komputa algorithms. ARM pachayo yakashuma izvi uye yakapa zvigamba uye madhairekitori kudzikamisa njodzi inowanikwa. Njodzi haina kukura zvakadaro, asi haigone kuregeredzwa, nekuti ma processors anoenderana neArM architecture ari kwese kwese, izvo zvinoita kuti njodzi yekuvuza isafungidzirwe maererano nemhedzisiro.

ARM iri kudonha: kusagadzikana kwakasarudzika kwekurwiswa kwekufungidzira komputa kwakawanikwa.

Kusagadzikana kwakawanikwa nenyanzvi dzeGoogle muArM zvivakwa zvakanzi Straight-Line Speculation (SLS) uye yakadomwa zviri pamutemo CVE-2020-13844. Sekureva kweARM, iyo SLS vulnerability imhando yeSpecter vulnerability, iyo (pamwe neMeltdown vulnerability) yakazozivikanwa zvakanyanya muna Ndira 2018. Mune mamwe mazwi, uku ndiko kusagadzikana kwechinyakare mukufungidzira komputa masisitimu ane parutivi chiteshi kurwisa.

Kufungidzira komputa kunoda kugadzirisa data pachine nguva pamwe nemapazi akati wandei, kunyangwe aya anogona kuzoraswa seasina basa. Side-channel kurwiswa kunobvumira data yakadaro yepakati kubiwa isati yaparadzwa zvachose. Nekuda kweizvozvo, isu tine ma processor ane simba uye njodzi yekudonha kwedata.

Iyo Straight-Line Speculation kurwiswa paArM-based processors inokonzeresa processor, pese paine shanduko murwizi rwekuraira, kuti ichinje kuita mirairo inowanikwa zvakananga mundangariro, panzvimbo yekutevera mirairo murukova rutsva rwekuraira. Zviripachena, iyi haisiyo yakanyanya kunaka mamiriro ekusarudza mirairo yekuita, iyo inogona kushandiswa neanorwisa.

Kune chikwereti chayo, ARM haina kungoburitsa gwara rekuvandudza kubatsira kudzivirira njodzi yekudonha kuburikidza neStraight-Line Speculation kurwisa, asi yakapawo zvigamba zvemashandisirwo makuru akadai seFreeBSD, OpenBSD, Yakavimbika Firmware-A uye OP-TEE, uye yakaburitsa zvigamba zveGCC neLLVM compilers.

Iyo kambani yakataurawo kuti kushandiswa kwezvigamba hakuzokanganisa mashandiro emapuratifomu eARM, sezvakaitika pa x86-inoenderana Intel mapuratifomu ane Specter uye Meltdown vulnerabilities yakavharwa. Nekudaro, isu tichakwanisa kudzidza nezve izvi kubva kune wechitatu-bato masosi, izvo zvinopa chinangwa chemufananidzo wekusagadzikana kutsva.



Source: 3dnews.ru

Voeg