{"id":52649,"date":"2019-11-13T00:00:00","date_gmt":"2019-11-12T21:00:00","guid":{"rendered":"https:\/\/prohoster.info\/blog\/blog_prohoster\/vyyavlen-novyj-variant-ataki-zombieload-na-protsessory-intel"},"modified":"2020-02-18T14:00:26","modified_gmt":"2020-02-18T11:00:26","slug":"vyyavlen-novyj-variant-ataki-zombieload-na-protsessory-intel","status":"publish","type":"post","link":"https:\/\/prohoster.info\/sq\/blog\/news\/vyyavlen-novyj-variant-ataki-zombieload-na-protsessory-intel","title":{"rendered":"\u00cbsht\u00eb zbuluar nj\u00eb variant i ri i sulmit Zombieload ndaj procesor\u00ebve Intel","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Hulumtuesit nga Universiteti Teknik i Grazit (Austri) <noindex><a rel=\"nofollow\" href=\"https:\/\/www.tugraz.at\/en\/tu-graz\/services\/news-stories\/media-service\/singleview\/article\/zombieload-2-0-greift-auch-neue-prozessoren-und-software-patch-an0\/\">zbuluan<\/a><\/noindex> informata n\u00eb lidhje me nj\u00eb metod\u00eb t\u00eb re sulmi p\u00ebrmes kanaleve an\u00ebsore <noindex><a rel=\"nofollow\" href=\"https:\/\/zombieloadattack.com\/\">ZombieLoad 2.0<\/a><\/noindex> (<noindex><a rel=\"nofollow\" href=\"https:\/\/security-tracker.debian.org\/tracker\/CVE-2019-11135\">CVE-2019-11135<\/a><\/noindex>), e cila lejon t\u00eb nxjerr\u00eb informacion t\u00eb ndjesh\u00ebm nga procese t\u00eb tjera, sistemi operativ, makina virtuale dhe enklava t\u00eb mbrojtura (TEE, Mjedisi i Ekzekutimit t\u00eb Besuesh\u00ebm). Problemi ndikon vet\u00ebm procesor\u00ebt Intel. Komponent\u00ebt p\u00ebr bllokimin e problemit <noindex><a rel=\"nofollow\" href=\"https:\/\/software.intel.com\/security-software-guidance\/insights\/deep-dive-intel-transactional-synchronization-extensions-intel-tsx-asynchronous-abort\">u propozuan<\/a><\/noindex> n\u00eb p\u00ebrdit\u00ebsimin e mikroprosesorit t\u00eb djesh\u00ebm <noindex><a rel=\"nofollow\" href=\"https:\/\/blogs.intel.com\/technology\/2019\/11\/ipas-november-2019-intel-platform-update-ipu\/\">Problemi i p\u00ebrket klas\u00ebs MDS (Sampling t\u00eb Dh\u00ebnave Mikroarkitektonike) dhe \u00ebsht\u00eb nj\u00eb variant i modernizuar<\/a><\/noindex>. <\/p>\n<p>i shpallur <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=50684\">n\u00eb maj t\u00eb sulmit ZombieLoad. ZombieLoad 2.0, ashtu si sulmet e tjera t\u00eb klas\u00ebs MDS, bazohen n\u00eb p\u00ebrdorimin e metodave t\u00eb analiz\u00ebs p\u00ebrmes kanaleve an\u00ebsore n\u00eb t\u00eb dh\u00ebnat n\u00eb strukturat mikroarkitektonike (p\u00ebr shembull, n\u00eb buferat e mbushjes (Line Fill Buffer) dhe ruajtjes (Store Buffer), ku p\u00ebrkoh\u00ebsisht ruhet informacioni q\u00eb p\u00ebrdoret gjat\u00eb ekzekutimit t\u00eb operacioneve t\u00eb Ngarkimit dhe Ruajtjes).<\/a><\/noindex> Varianti i ri i sulmit ZombieLoad<\/p>\n<p>bazohet <noindex><a rel=\"nofollow\" href=\"https:\/\/access.redhat.com\/solutions\/tsx-asynchronousabort\">n\u00eb rrjedhjen q\u00eb ndodh gjat\u00eb pun\u00ebs s\u00eb mekanizmit t\u00eb nd\u00ebrprerjes asinkrone t\u00eb operacioneve (TAA, Abort Asynchronous i TSX), i cili \u00ebsht\u00eb i implementuar n\u00eb zgjerimin TSX (Zgjerimet e Sinkronizimit Transaksional), i cili ofron mjete p\u00ebr t\u00eb punuar me memorien transaksionale, duke lejuar rritjen e performanc\u00ebs s\u00eb aplikacioneve mnoj\u00ebshe p\u00ebrmes dinamik\u00ebs s\u00eb p\u00ebrjashtimit t\u00eb operacioneve t\u00eb panevojshme t\u00eb sinkronizimit (n\u00eb mb\u00ebshtetje t\u00eb transaksioneve atomike q\u00eb mund t\u00eb pranohet ose t\u00eb nd\u00ebrpritet). N\u00eb rast t\u00eb nj\u00eb nd\u00ebrprerjeje, operacionet e kryera me nj\u00ebsin\u00eb transaksionale t\u00eb memorie, do t\u00eb kthehen mbrapsht.<\/a><\/noindex> Nd\u00ebrprerja e transaksionit kryhet asinkron, dhe n\u00eb k\u00ebt\u00eb koh\u00eb rrjedha t\u00eb tjera mund t\u00eb aksesojn\u00eb cache-n\u00eb, e cila gjithashtu p\u00ebrdoret n\u00eb nj\u00ebsin\u00eb e hedhur transaksionale t\u00eb memorie. N\u00eb momentin nga fillimi deri n\u00eb p\u00ebrfundimin e sakt\u00eb t\u00eb nd\u00ebrprerjes asinkrone t\u00eb transaksionit, nuk p\u00ebrjashtohet ndodhia e situatave kur procesori gjat\u00eb ekzekutimit spekullativ t\u00eb operacionit mund t\u00eb lexoj\u00eb t\u00eb dh\u00ebna nga buferat e brendshme mikroarkitektonike dhe t'i transmetoj\u00eb ato n\u00eb operacionin e ekzekutuar spekullativisht. M\u00eb von\u00eb do t\u00eb identifikohet konflikti, dhe operacioni spekullativ do t\u00eb hidhet posht\u00eb, por t\u00eb dh\u00ebnat do t\u00eb mbeten n\u00eb cache dhe mund t\u00eb nxirren duke p\u00ebrdorur metodat e rim\u00ebk\u00ebmbjes s\u00eb cache-it p\u00ebrmes kanaleve an\u00ebsore.<\/p>\n<p>\u041f\u0440\u0435\u0440\u044b\u0432\u0430\u043d\u0438\u0435 \u0442\u0440\u0430\u043d\u0437\u0430\u043a\u0446\u0438\u0438 \u0432\u044b\u043f\u043e\u043b\u043d\u044f\u0435\u0442\u0441\u044f \u0430\u0441\u0438\u043d\u0445\u0440\u043e\u043d\u043d\u043e, \u0438 \u0432 \u044d\u0442\u043e \u0432\u0440\u0435\u043c\u044f \u0434\u0440\u0443\u0433\u0438\u0435 \u043f\u043e\u0442\u043e\u043a\u0438 \u043c\u043e\u0433\u0443\u0442 \u043e\u0431\u0440\u0430\u0449\u0430\u0442\u044c\u0441\u044f \u043a \u043a\u044d\u0448\u0443, \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u0442\u0430\u043a\u0436\u0435 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u0435\u0442\u0441\u044f \u0432 \u043e\u0442\u0431\u0440\u0430\u0441\u044b\u0432\u0430\u0435\u043c\u043e\u043c \u0442\u0440\u0430\u043d\u0437\u0430\u043a\u0446\u0438\u043e\u043d\u043d\u043e\u043c \u0440\u0435\u0433\u0438\u043e\u043d\u0435 \u043f\u0430\u043c\u044f\u0442\u0438. \u0412 \u043c\u043e\u043c\u0435\u043d\u0442 \u043e\u0442 \u043d\u0430\u0447\u0430\u043b\u0430 \u0434\u043e \u0444\u0430\u043a\u0442\u0438\u0447\u0435\u0441\u043a\u043e\u0433\u043e \u0437\u0430\u0432\u0435\u0440\u0448\u0435\u043d\u0438\u044f \u0430\u0441\u0438\u043d\u0445\u0440\u043e\u043d\u043d\u043e\u0433\u043e \u043f\u0440\u0435\u0440\u044b\u0432\u0430\u043d\u0438\u044f \u0442\u0440\u0430\u043d\u0437\u0430\u043a\u0446\u0438\u0438 \u043d\u0435 \u0438\u0441\u043a\u043b\u044e\u0447\u0435\u043d\u043e  \u0432\u043e\u0437\u043d\u0438\u043a\u043d\u043e\u0432\u0435\u043d\u0438\u0435 \u0441\u0438\u0442\u0443\u0430\u0446\u0438\u0439, \u043a\u043e\u0433\u0434\u0430 \u043f\u0440\u043e\u0446\u0435\u0441\u0441\u043e\u0440 \u0432 \u0445\u043e\u0434\u0435 \u0441\u043f\u0435\u043a\u0443\u043b\u044f\u0442\u0438\u0432\u043d\u043e\u0433\u043e \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u044f \u043e\u043f\u0435\u0440\u0430\u0446\u0438\u0438 \u043c\u043e\u0436\u0435\u0442 \u043f\u0440\u043e\u0447\u0438\u0442\u0430\u0442\u044c \u0434\u0430\u043d\u043d\u044b\u0435 \u0438\u0437 \u0432\u043d\u0443\u0442\u0440\u0435\u043d\u043d\u0438\u0445 \u043c\u0438\u043a\u0440\u043e\u0430\u0440\u0445\u0438\u0442\u0435\u043a\u0442\u0443\u0440\u043d\u044b\u0445  \u0431\u0443\u0444\u0435\u0440\u043e\u0432 \u0438 \u043f\u0435\u0440\u0435\u0434\u0430\u0442\u044c \u0438\u0445 \u0432  \u0441\u043f\u0435\u043a\u0443\u043b\u044f\u0442\u0438\u0432\u043d\u043e \u0432\u044b\u043f\u043e\u043b\u043d\u044f\u0435\u043c\u0443\u044e \u043e\u043f\u0435\u0440\u0430\u0446\u0438\u044e. \u0417\u0430\u0442\u0435\u043c \u043a\u043e\u043d\u0444\u043b\u0438\u043a\u0442 \u0431\u0443\u0434\u0435\u0442 \u0432\u044b\u044f\u0432\u043b\u0435\u043d, \u0430 \u0441\u043f\u0435\u043a\u0443\u043b\u044f\u0442\u0438\u0432\u043d\u0430\u044f \u043e\u043f\u0435\u0440\u0430\u0446\u0438\u044f \u043e\u0442\u0431\u0440\u043e\u0448\u0435\u043d\u0430, \u043d\u043e \u0434\u0430\u043d\u043d\u044b\u0435 \u043e\u0441\u0442\u0430\u043d\u0443\u0442\u0441\u044f \u0432 \u043a\u044d\u0448\u0435 \u0438 \u043c\u043e\u0433\u0443\u0442 \u0431\u044b\u0442\u044c \u0438\u0437\u0432\u043b\u0435\u0447\u0435\u043d\u044b \u0441 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043d\u0438\u0435\u043c \u043c\u0435\u0442\u043e\u0434\u043e\u0432 \u0432\u043e\u0441\u0441\u0442\u0430\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u043a\u044d\u0448\u0430 \u043f\u043e \u0441\u0442\u043e\u0440\u043e\u043d\u043d\u0438\u043c \u043a\u0430\u043d\u0430\u043b\u0430\u043c. <\/p>\n<p>Sulmi p\u00ebrfshin hapjen e transaksioneve TSX dhe krijimin e kushteve p\u00ebr nd\u00ebrprerjen e tyre asinkrone, gjat\u00eb s\u00eb cil\u00ebs krijohen kushte p\u00ebr rrjedhjen e p\u00ebrmbajtjes nga buferat e brendsh\u00ebm, t\u00eb mbushur spekulativisht me t\u00eb dh\u00ebna nga operacionet e leximit n\u00eb memorien e CPU-s\u00eb q\u00eb ekzekutohet n\u00eb t\u00eb nj\u00ebjtin b\u00ebrtham\u00eb. Rrjedhja \u00ebsht\u00eb e kufizuar n\u00eb b\u00ebrtham\u00ebn fizike aktuale t\u00eb CPU-s\u00eb (n\u00eb t\u00eb cil\u00ebn ekzekutohet kodi i sulmuesit), por duke qen\u00eb se buferat mikroarkitekturor\u00eb ndahen nga thread-et e ndryshme n\u00eb regjimin Hyper-Threading, \u00ebsht\u00eb e mundur t\u00eb ndodhin rrjedhje t\u00eb operacioneve me memorien q\u00eb ekzekutohen n\u00eb thread-e t\u00eb tjera t\u00eb CPU-s\u00eb. <\/p>\n<p>Sulmit <noindex><a rel=\"nofollow\" href=\"https:\/\/www.intel.com\/content\/www\/us\/en\/security-center\/advisory\/intel-sa-00270.html\">i n\u00ebnshtrohen<\/a><\/noindex> disa modele t\u00eb procesor\u00ebve Intel Core t\u00eb gjenerat\u00ebs s\u00eb tet\u00eb, t\u00eb n\u00ebnt\u00eb dhe t\u00eb dhjet\u00eb, si dhe Intel Pentium Gold, Intel Celeron 5000, Intel Xeon E, Intel Xeon W dhe gjenerat\u00ebn e dyt\u00eb t\u00eb Intel Xeon Scalable. Po ashtu, sulmit i n\u00ebnshtrohen edhe procesor\u00ebt e rinj Intel t\u00eb bazuar n\u00eb mikroarkitektur\u00ebn Cascade Lake, e cila u prezantua n\u00eb prill dhe fillimisht nuk ishte e ndjeshme ndaj sulmeve RIDL dhe Fallout. P\u00ebrve\u00e7 Zombieload 2.0, k\u00ebrkuesit gjithashtu zbuluan mund\u00ebsin\u00eb e anashkalimit t\u00eb metodave t\u00eb m\u00ebparshme t\u00eb mbrojtjes nga sulmet MDS, t\u00eb bazuara n\u00eb p\u00ebrdorimin e instruksionit VERW p\u00ebr t\u00eb pastruar p\u00ebrmbajtjen e buferave mikroarkitekturor\u00eb n\u00eb momentin e kthimit nga b\u00ebrthama n\u00eb hap\u00ebsir\u00ebn e p\u00ebrdoruesit ose gjat\u00eb transferimit t\u00eb kontrollit n\u00eb sistemin mik.<\/p>\n<p>N\u00eb raportin e Intel-it, thuhet se n\u00eb sisteme me ngarkesa t\u00eb homogjene, mund\u00ebsia e realizimit t\u00eb sulmit \u00ebsht\u00eb e v\u00ebshtir\u00ebsuar, pasi rrjedhja nga struktura mikroarkitekturale mbulon t\u00eb gjith\u00eb aktivitetin n\u00eb sistem dhe sulmuesi nuk mund t\u00eb ndikoj\u00eb n\u00eb burimin e t\u00eb dh\u00ebnave t\u00eb nxjerra, dometh\u00ebn\u00eb mund t\u00eb grumbulloj\u00eb vet\u00ebm informacionin q\u00eb del si rezultat i rrjedhjes dhe t\u00eb p\u00ebrpiqet t\u00eb identifikoj\u00eb informacionin e dobish\u00ebm n\u00eb mesin e k\u00ebtyre t\u00eb dh\u00ebnave, pa mund\u00ebsin\u00eb p\u00ebr t\u00eb kapur n\u00eb m\u00ebnyr\u00eb t\u00eb drejtp\u00ebrdrejt\u00eb t\u00eb dh\u00ebnat q\u00eb lidhen me adresa t\u00eb caktuara t\u00eb memories. Megjithat\u00eb, k\u00ebrkuesit kan\u00eb publikuar <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/IAIK\/ZombieLoad\">prototipin e eksploitit<\/a><\/noindex>, q\u00eb funksionon n\u00eb Linux dhe Windows, si dhe \u00ebsht\u00eb demonstruar mund\u00ebsia e p\u00ebrdorimit t\u00eb sulmit p\u00ebr t\u00eb p\u00ebrcaktuar hash-in e fjal\u00ebkalimit t\u00eb p\u00ebrdoruesit root.<br \/>\n<noindex><a rel=\"nofollow\" href=\"https:\/\/seclists.org\/oss-sec\/2019\/q4\/67\">\u00cbsht\u00eb e mundur<\/a><\/noindex> realizimi i sulmit nga sistemi mik p\u00ebr grumbullimin e t\u00eb dh\u00ebnave q\u00eb figurojn\u00eb n\u00eb operacionet e sistemeve t\u00eb tjera mik, mjedisit t\u00eb host-it, hipervizorit dhe enklav\u00ebve Intel SGX.<\/p>\n<p><center><div class=\"youtube-placeholder\" data-id=\"zaTxBZXE9pQ\" onclick=\"loadVideo(this)\">\r\n        <img decoding=\"async\" src=\"https:\/\/img.youtube.com\/vi\/zaTxBZXE9pQ\/hqdefault.jpg\" alt=\"Luaj videon\" loading=\"lazy\" width=\"480\" height=\"360\" style=\"width:100%;height:auto;\">\r\n        <div class=\"play-button\"><\/div>\r\n    <\/div><\/center><\/p>\n<p> Patch-et p\u00ebr bllokimin e dob\u00ebsis\u00eb <noindex><a rel=\"nofollow\" href=\"https:\/\/git.kernel.org\/pub\/scm\/linux\/kernel\/git\/torvalds\/linux.git\/commit\/?id=a7a248c593e4\">are packages with proprietary NVIDIA drivers. For systems with NVIDIA graphics chips, free \"Nouveau\" drivers continue to be offered by default, while proprietary drivers are available as an option for quick installation after the installation is completed;<\/a><\/noindex> jan\u00eb p\u00ebrfshir\u00eb n\u00eb kodin baz\u00eb t\u00eb b\u00ebrtham\u00ebs Linux dhe jan\u00eb inkorporuar n\u00eb l\u00ebshimet  \t<noindex><a rel=\"nofollow\" href=\"https:\/\/www.kernel.org\/\">5.3.11, 4.19.84, 4.14.154, 4.9.201 dhe 4.4.201<\/a><\/noindex>. P\u00ebrdit\u00ebsimet me b\u00ebrtham\u00ebn dhe mikrokodin gjithashtu tashm\u00eb jan\u00eb publikuar p\u00ebr distribucione kryesore (<noindex><a rel=\"nofollow\" href=\"https:\/\/security-tracker.debian.org\/tracker\/CVE-2019-11135\">Debian<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/bugzilla.suse.com\/show_bug.cgi?id=CVE-2019-11135\">SUSE\/openSUSE<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/people.canonical.com\/~ubuntu-security\/cve\/2019\/CVE-2019-11135.html\">Ubuntu<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=CVE-2019-11135\">RHEL<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=1771650\">Fedora<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.freebsd.org\/security\/advisories\/FreeBSD-SA-19:26.mcu.asc\">FreeBSD<\/a><\/noindex>). Problemi u zbulua n\u00eb prill dhe zgjidhja u koordinua nga Intel me zhvilluesit e sistemeve operative.<\/p>\n<p>\u041f\u0440\u043e\u0441\u0442\u0435\u0439\u0448\u0438\u043c \u043c\u0435\u0442\u043e\u0434\u043e\u043c \u0431\u043b\u043e\u043a\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u044f Zombieload  2.0 \u044f\u0432\u043b\u044f\u0435\u0442\u0441\u044f \u043e\u0442\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u0435 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u043a\u0438 TSX \u0432 CPU. \u041f\u0440\u0435\u0434\u043b\u043e\u0436\u0435\u043d\u043d\u043e\u0435 \u0434\u043b\u044f \u044f\u0434\u0440\u0430 Linux \u0438\u0441\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0435 \u0432\u043a\u043b\u044e\u0447\u0430\u0435\u0442 \u043d\u0435\u0441\u043a\u043e\u043b\u044c\u043a\u043e \u0432\u0430\u0440\u0438\u0430\u043d\u0442\u043e\u0432 \u0437\u0430\u0449\u0438\u0442\u044b. \u041f\u0435\u0440\u0432\u044b\u0439 \u0432\u0430\u0440\u0438\u0430\u043d\u0442 \u043f\u0440\u0435\u0434\u043b\u0430\u0433\u0430\u0435\u0442 \u043f\u0430\u0440\u0430\u043c\u0435\u0442\u0440 &#171;tsx=on\/off\/auto&#187;, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0438\u0439 \u0443\u043f\u0440\u0430\u0432\u043b\u044f\u0442\u044c \u0432\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u0435\u043c  \u0440\u0430\u0441\u0448\u0438\u0440\u0435\u043d\u0438\u044f TSX \u0432 CPU (\u0437\u043d\u0430\u0447\u0435\u043d\u0438\u0435 auto \u043e\u0442\u043a\u043b\u044e\u0447\u0430\u0435\u0442 TSX \u0442\u043e\u043b\u044c\u043a\u043e \u0434\u043b\u044f \u0443\u044f\u0437\u0432\u0438\u043c\u044b\u0445 CPU). \u0412\u0442\u043e\u0440\u043e\u0439 \u0432\u0430\u0440\u0438\u0430\u043d\u0442 \u0437\u0430\u0449\u0438\u0442\u044b \u0432\u043a\u043b\u044e\u0447\u0430\u0435\u0442\u0441\u044f \u043f\u0430\u0440\u0430\u043c\u0435\u0442\u0440\u043e\u043c &#171;tsx_async_abort=off\/full\/full,nosmt&#187;  \u0438 \u043e\u0441\u043d\u043e\u0432\u0430\u043d \u043d\u0430 \u043e\u0447\u0438\u0441\u0442\u043a\u0435 \u043c\u0438\u043a\u0440\u043e\u0430\u0440\u0445\u0438\u0442\u0435\u043a\u0442\u0443\u0440\u043d\u044b\u0445 \u0431\u0443\u0444\u0435\u0440\u043e\u0432, \u0432\u043e \u0432\u0440\u0435\u043c\u044f \u043f\u0435\u0440\u0435\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u044f \u043a\u043e\u043d\u0442\u0435\u043a\u0441\u0442\u0430 (\u0444\u043b\u0430\u0433 nosmt \u0434\u043e\u043f\u043e\u043b\u043d\u0438\u0442\u0435\u043b\u044c\u043d\u043e \u043e\u0442\u043a\u043b\u044e\u0447\u0430\u0435\u0442 SMT\/Hyper-Threads). \u0414\u043b\u044f \u043f\u0440\u043e\u0432\u0435\u0440\u043a\u0438 \u043f\u043e\u0434\u0432\u0435\u0440\u0436\u0435\u043d\u043d\u043e\u0441\u0442\u0438 \u0441\u0438\u0441\u0442\u0435\u043c\u044b \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u0432 sysfs \u043f\u0440\u0435\u0434\u0443\u0441\u043c\u043e\u0442\u0440\u0435\u043d \u043f\u0430\u0440\u0430\u043c\u0435\u0442\u0440 &#171;\/sys\/devices\/system\/cpu\/vulnerabilities\/tsx_async_abort&#187;.<\/p>\n<p>P\u00ebr m\u00eb tep\u00ebr, n\u00eb <noindex><a rel=\"nofollow\" href=\"https:\/\/blogs.intel.com\/technology\/2019\/11\/ipas-november-2019-intel-platform-update-ipu\/#gs.fotnie\">p\u00ebrdit\u00ebsimin<\/a><\/noindex> mikrokodit  <noindex><a rel=\"nofollow\" href=\"https:\/\/www.intel.com\/content\/www\/us\/en\/security-center\/advisory\/intel-sa-00210.html\">\u00ebsht\u00eb eliminuar<\/a><\/noindex> nj\u00eb tjet\u00ebr <noindex><a rel=\"nofollow\" href=\"https:\/\/access.redhat.com\/security\/vulnerabilities\/ifu-page-mce\">vulnerabiliteti<\/a><\/noindex> (<noindex><a rel=\"nofollow\" href=\"https:\/\/security-tracker.debian.org\/tracker\/CVE-2018-12207\">CVE-2018-12207<\/a><\/noindex>) n\u00eb procesor\u00ebt Intel, q\u00eb gjithashtu \u00ebsht\u00eb bllokuar n\u00eb b\u00ebrtham\u00ebn e re <noindex><a rel=\"nofollow\" href=\"https:\/\/git.kernel.org\/pub\/scm\/linux\/kernel\/git\/torvalds\/linux.git\/commit\/?id=7f00cc8d4a51\">p\u00ebrdit\u00ebsimin<\/a><\/noindex> . Dob\u00ebsia <noindex><a rel=\"nofollow\" href=\"https:\/\/software.intel.com\/security-software-guidance\/insights\/deep-dive-machine-check-error-avoidance-page-size-change\">mund\u00ebson<\/a><\/noindex> \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u0430\u0442\u0430\u043a\u0443\u044e\u0449\u0435\u043c\u0443 \u0438\u043d\u0438\u0446\u0438\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u043e\u0442\u043a\u0430\u0437 \u0432 \u043e\u0431\u0441\u043b\u0443\u0436\u0438\u0432\u0430\u043d\u0438\u0438, \u043f\u0440\u0438\u0432\u043e\u0434\u044f\u0449\u0438\u0439 \u043a \u0437\u0430\u0432\u0438\u0441\u0430\u043d\u0438\u044e \u0441\u0438\u0441\u0442\u0435\u043c\u044b \u0432 \u0441\u043e\u0441\u0442\u043e\u044f\u043d\u0438\u0438 &#171;Machine Check Error&#187;.<br \/>\n Sulmi gjithashtu <noindex><a rel=\"nofollow\" href=\"https:\/\/xenbits.xen.org\/xsa\/advisory-304.html\">mund t\u00eb kryhet<\/a><\/noindex> nga nj\u00eb sistem nikoqir.<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Burimi: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=51852\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u0413\u0440\u0430\u0446\u0441\u043a\u043e\u0433\u043e \u0442\u0435\u0445\u043d\u0438\u0447\u0435\u0441\u043a\u043e\u0433\u043e \u0443\u043d\u0438\u0432\u0435\u0440\u0441\u0438\u0442\u0435\u0442\u0430 (\u0410\u0432\u0441\u0442\u0440\u0438\u044f) \u0440\u0430\u0441\u043a\u0440\u044b\u043b\u0438 \u0441\u0432\u0435\u0434\u0435\u043d\u0438\u044f \u043e \u043d\u043e\u0432\u043e\u043c \u043c\u0435\u0442\u043e\u0434\u0435 \u0430\u0442\u0430\u043a\u0438 \u043f\u043e \u0441\u0442\u043e\u0440\u043e\u043d\u043d\u0438\u043c \u043a\u0430\u043d\u0430\u043b\u0430\u043c ZombieLoad 2.0 (CVE-2019-11135), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0435\u043c \u0438\u0437\u0432\u043b\u0435\u0447\u044c \u043a\u043e\u043d\u0444\u0438\u0434\u0435\u043d\u0446\u0438\u0430\u043b\u044c\u043d\u0443\u044e \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044e \u0438\u0437 \u0434\u0440\u0443\u0433\u0438\u0445 \u043f\u0440\u043e\u0446\u0435\u0441\u0441\u043e\u0432, \u043e\u043f\u0435\u0440\u0430\u0446\u0438\u043e\u043d\u043d\u043e\u0439 \u0441\u0438\u0441\u0442\u0435\u043c\u044b, \u0432\u0438\u0440\u0442\u0443\u0430\u043b\u044c\u043d\u044b\u0445 \u043c\u0430\u0448\u0438\u043d \u0438 \u0437\u0430\u0449\u0438\u0449\u0451\u043d\u043d\u044b\u0445 \u0430\u043d\u043a\u043b\u0430\u0432\u043e\u0432 (TEE, Trusted Execution Environment). \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0430 \u0437\u0430\u0442\u0440\u0430\u0433\u0438\u0432\u0430\u0435\u0442 \u0442\u043e\u043b\u044c\u043a\u043e \u043f\u0440\u043e\u0446\u0435\u0441\u0441\u043e\u0440\u044b Intel. \u041a\u043e\u043c\u043f\u043e\u043d\u0435\u043d\u0442\u044b \u0434\u043b\u044f \u0431\u043b\u043e\u043a\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u044f \u043f\u0440\u043e\u0431\u043b\u0435\u043c\u044b \u043f\u0440\u0435\u0434\u043b\u043e\u0436\u0435\u043d\u044b \u0432\u043e \u0432\u0447\u0435\u0440\u0430\u0448\u043d\u0435\u043c \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u0438 \u043c\u0438\u043a\u0440\u043e\u043a\u043e\u0434\u0430. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0430 \u043e\u0442\u043d\u043e\u0441\u0438\u0442\u0441\u044f \u043a \u043a\u043b\u0430\u0441\u0441\u0443 MDS [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-52649","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u0413\u0440\u0430\u0446\u0441\u043a\u043e\u0433\u043e \u0442\u0435\u0445\u043d\u0438\u0447\u0435\u0441\u043a\u043e\u0433\u043e \u0443\u043d\u0438\u0432\u0435\u0440\u0441\u0438\u0442\u0435\u0442\u0430 (\u0410\u0432\u0441\u0442\u0440\u0438\u044f)\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/sq\/blog\/news\/vyyavlen-novyj-variant-ataki-zombieload-na-protsessory-intel\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"sq_AL\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0412\u044b\u044f\u0432\u043b\u0435\u043d \u043d\u043e\u0432\u044b\u0439 \u0432\u0430\u0440\u0438\u0430\u043d\u0442 \u0430\u0442\u0430\u043a\u0438 Zombieload \u043d\u0430 \u043f\u0440\u043e\u0446\u0435\u0441\u0441\u043e\u0440\u044b Intel | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u0413\u0440\u0430\u0446\u0441\u043a\u043e\u0433\u043e \u0442\u0435\u0445\u043d\u0438\u0447\u0435\u0441\u043a\u043e\u0433\u043e \u0443\u043d\u0438\u0432\u0435\u0440\u0441\u0438\u0442\u0435\u0442\u0430 (\u0410\u0432\u0441\u0442\u0440\u0438\u044f)\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/sq\/blog\/news\/vyyavlen-novyj-variant-ataki-zombieload-na-protsessory-intel\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2019-11-12T21:00:00+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-02-18T11:00:26+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47 \u00cbsht\u00eb identifikuar nj\u00eb variant i ri sulmi Zombieload ndaj procesor\u00ebve Intel | ProHoster","description":"Hulumtuesit nga Universiteti Teknik i Grazit (Austri)","canonical_url":"https:\/\/prohoster.info\/sq\/blog\/news\/vyyavlen-novyj-variant-ataki-zombieload-na-protsessory-intel","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"sq_AL","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0412\u044b\u044f\u0432\u043b\u0435\u043d \u043d\u043e\u0432\u044b\u0439 \u0432\u0430\u0440\u0438\u0430\u043d\u0442 \u0430\u0442\u0430\u043a\u0438 Zombieload \u043d\u0430 \u043f\u0440\u043e\u0446\u0435\u0441\u0441\u043e\u0440\u044b Intel | ProHoster","og:description":"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u0413\u0440\u0430\u0446\u0441\u043a\u043e\u0433\u043e \u0442\u0435\u0445\u043d\u0438\u0447\u0435\u0441\u043a\u043e\u0433\u043e \u0443\u043d\u0438\u0432\u0435\u0440\u0441\u0438\u0442\u0435\u0442\u0430 (\u0410\u0432\u0441\u0442\u0440\u0438\u044f)","og:url":"https:\/\/prohoster.info\/sq\/blog\/news\/vyyavlen-novyj-variant-ataki-zombieload-na-protsessory-intel","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2019-11-12T21:00:00+00:00","article:modified_time":"2020-02-18T11:00:26+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"52649","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":"2026-01-24 04:20:19","breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 20:39:26","updated":"2026-01-24 04:20:19","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/52649","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/comments?post=52649"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/52649\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media?parent=52649"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/categories?post=52649"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/tags?post=52649"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}