News: Link to old message forum

Author Topic: Meltdown and Spectre  (Read 4703 times)

diddly

  • Moderator
  • Full Member
  • *****
  • Posts: 156
  • Karma: +7/-0
  • Fight apathy... or don't
    • View Profile
Meltdown and Spectre
« on: January 04, 2018, 10:24:07 AM »
  • [applaud]0
  • [smite]0
  • Meltdown and Spectre are two major computer vulnerabilities in the news these days.  A fairly descriptive article explains that an attacker could gain access to your system through your web browser.

    To protect yourself, make sure you are using the latest version of Chrome or Firefox as your browser, and keep your operating system updated with the latest patches.

    Meltdown is an even more serious problem, in that it requires a new CPU, and reportedly affects only Intel chips.  So maybe, if you're looking to buy a new intel device, you might want to consider AMD or waiting.  Unfortunately, the "fixed" chips will run 5%-50% slower (although 30% gets most widely reported).

    Apparently the CEO of Intel knew of the vulnerability before he started selling off his stock in the company, and this was a factor causing Google Project Zero to reveal the issue.
    « Last Edit: January 04, 2018, 10:32:14 AM by diddly »

    diddly

    • Moderator
    • Full Member
    • *****
    • Posts: 156
    • Karma: +7/-0
    • Fight apathy... or don't
      • View Profile
    Re: Meltdown and Spectre
    « Reply #1 on: January 04, 2018, 12:51:26 PM »
  • [applaud]0
  • [smite]0
  • Because Meltdown and Spectre keep getting lumped together, it gets difficult to know which facts related to which CPU/OS/Device.  If we consider them together, then in fact, most CPUs and OSes are impacted.  https://www.kb.cert.org/vuls/id/584653

    Quote
    Vendor Information (Learn More)
    Vendor   Status   Date Notified   Date Updated
    AMD   Affected   -   03 Jan 2018
    Apple   Affected   -   03 Jan 2018
    Arm   Affected   -   03 Jan 2018
    Google   Affected   -   03 Jan 2018
    Intel   Affected   -   03 Jan 2018
    Linux Kernel   Affected   -   03 Jan 2018
    Microsoft   Affected   -   03 Jan 2018
    Mozilla   Affected   -   03 Jan 2018