Announcement
Collapse
No announcement yet.
Google Makes Disclosure About The CPU Vulnerability Affecting Intel / AMD / ARM
Collapse
X
-
All this sounds to me that Intel invented Spectre of trolling, to diminish their Meltdown. Spectre as a trolling tool to save their asses as much as possible
Torvalds has his say on some of the patches: https://marc.info/?l=linux-kernel&m=151502350206820&w=2
Why is this all done without any configuration options? A *competent* CPU engineer would fix this by making sure speculation doesn't happen across protection domains. Maybe even a L1 I$ that is keyed by CPL. I think somebody inside of Intel needs to really take a long hard look at their CPU's, and actually admit that they have issues instead of writing PR blurbs that say that everything works as designed. .. and that really means that all these mitigation patches should be written with "not all CPU's are crap" in mind. Or is Intel basically saying "we are committed to selling you shit forever and ever, and never fixing anything"? Because if that's the case, maybe we should start looking towards the ARM64 people more. Please talk to management. Because I really see exactly two possibibilities: - Intel never intends to fix anything OR - these workarounds should have a way to disable them. Which of the two is it? Linus
- Likes 10
Comment
-
All this sounds to me that Intel invented Spectre of trolling, to diminish their Meltdown. Spectre as a trolling tool to save their asses as much as possible ​
Torvalds has his say on some of the patches: https://marc.info/?l=linux-kernel&m=...206820&w=2
Why is this all done without any configuration options? A *competent* CPU engineer would fix this by making sure speculation doesn't happen across protection domains. Maybe even a L1 I$ that is keyed by CPL. I think somebody inside of Intel needs to really take a long hard look at their CPU's, and actually admit that they have issues instead of writing PR blurbs that say that everything works as designed. .. and that really means that all these mitigation patches should be written with "not all CPU's are crap" in mind. Or is Intel basically saying "we are committed to selling you shit forever and ever, and never fixing anything"? Because if that's the case, maybe we should start looking towards the ARM64 people more. Please talk to management. Because I really see exactly two possibibilities: - Intel never intends to fix anything OR - these workarounds should have a way to disable them. Which of the two is it? Linus
- Likes 2
Comment
-
AMD released a statement with a easy to read table summing up the problems/risks.
Google Project Zero (GPZ) Research Title Details Variant One Bounds Check Bypass Resolved by software / OS updates to be made available by system vendors and manufacturers. Negligible performance impact expected. Variant Two Branch Target Injection Differences in AMD architecture mean there is a near zero risk of exploitation of this variant. Vulnerability to Variant 2 has not been demonstrated on AMD processors to date. Variant Three Rogue Data Cache Load Zero AMD vulnerability due to AMD architecture differences.
Kind regards.
B.
- Likes 6
Comment
-
Originally posted by Spooktra View Post
I love how the AMD apologists are starting to come out of the woodwork all over the 'net.
I'm not accusing...just saying it seems like some 3 letter entity that has trouble posting a profit for more than a quarter at a time may have some extra staff out there spreading FUD.
- Likes 5
Comment
-
Originally posted by Brutalix View PostAMD released a statement with a easy to read table summing up the problems/risks.
Google Project Zero (GPZ) Research Title Details Variant One Bounds Check Bypass Resolved by software / OS updates to be made available by system vendors and manufacturers. Negligible performance impact expected. Variant Two Branch Target Injection Differences in AMD architecture mean there is a near zero risk of exploitation of this variant. Vulnerability to Variant 2 has not been demonstrated on AMD processors to date. Variant Three Rogue Data Cache Load Zero AMD vulnerability due to AMD architecture differences.
Kind regards.
B.
Comment
Comment