I-Intel ipapashe ulwazi malunga neklasi entsha yobuthathaka

I-Intel ipapashe ulwazi malunga neklasi entsha yobuthathaka kwiiprosesa zayo - i-MDS (iMicroarchitectural Data Sampling). Njengohlaselo lweSpecter oludlulileyo, imiba emitsha inokukhokelela ekuvuzeni kwedatha yobunini kwinkqubo yokusebenza, oomatshini ababonakalayo, kunye neenkqubo zangaphandle. Kutyholwa ukuba iingxaki zachongwa kuqala ngabasebenzi be-Intel kunye namaqabane ngexesha lophicotho lwangaphakathi. NgoJuni no-Agasti 2018, ulwazi malunga neengxaki lunikezelwe kwi-Intel ngabaphandi abazimeleyo, emva koko phantse unyaka womsebenzi odibeneyo wenziwa kunye nabavelisi kunye nabaphuhlisi benkqubo yokusebenza ukuchonga ii-vectors ezinokuthi zihlasele kwaye zihambise izilungiso. I-AMD kunye ne-ARM processors abachatshazelwa yingxaki.

Ubuthathaka obuchongiweyo:

I-CVE-2018-12126 - i-MSBDS (i-Microarchitectural Store Buffer Data Sampling), ukubuyiswa kwemixholo ye-buffers yokugcina. Isetyenziswa kuhlaselo lweFallout. Iqondo lengozi limiselwe ukuba libe ngamanqaku angama-6.5 (CVSS);

CVE-2018-12127 - MLPDS (Microarchitectural Load Port Data Sampling), ukubuyiswa kwemixholo yomthwalo wezibuko. Isetyenziswe kuhlaselo lwe-RIDL. I-CVSS 6.5;

CVE-2018-12130 - MFBDS (Microarchitectural Fill Buffer Data Sampling), ukubuyiswa kwemixholo yokugcwalisa i-buffer. Isetyenziswa kwiZombieLoad kunye nokuhlaselwa kwe-RIDL. I-CVSS 6.5;

I-CVE-2019-11091 - I-MDSUM (i-Microarchitectural Data Sampling Imemori engachetywayo), ukubuyiswa kwemixholo yememori engenakulinganiswa. Isetyenziswe kuhlaselo lwe-RIDL. I-CVSS 3.8.

umthombo: linux.org.ru

Yongeza izimvo