Diciembre 19, 2018

Key details of the huge processor problem [Fixes are here — CPU flaw

06 Enero 2018, 06:13 | Fidele Alvizo

Key details of the huge processor problem [Fixes are here — CPU flaw

A laptop that uses Intel's sixth-generation Core chip known as Skylake at the Intel booth during CES International in Las Vegas in January 2016

Should my IT department freak out?

Intel is at the center of the problem because it supplies the processors used in many of the world's PCs.

After chip-maker Intel confirmed a potential security flaw in its chips, Microsoft on Thursday issued emergency updates to supported versions of Windows.

Intel says that the actual performance hit by the fixes will be "workload dependent", meaning it will vary depending on the type of apps you're running on your computer.

Should my son or daughter be aware?

You also don't need to stress about Gmail or G Suite.

The firmware updates and software patches could cause some systems to run slower. It seems unlikely that manufacturers will ship replacements for the millions of machines affected.

A user's computer's CPU operates in two modes: kernel mode and user mode.

Microchips are the basic electronic systems behind many devices such as computers and mobile phones.

In a blog post responding to the research, Intel said the flaws described had "the potential to improperly gather sensitive data from computing devices that are operating as designed", but that the company "believes these exploits do not have the potential to corrupt, modify or delete data".

These supposedly inaccessible tables contained references to physical memory. The name "Spectre" for the second flaw came from the fact that there is no easy fix, which means it will likely "haunt us for quite some time".

A fix is not yet delivered for all computers with Intel inside. Here's what we know so far.

Today, we're learning more about what exactly is going on, and that there are not one, but actually two vulnerabilities that have been disclosed.

Both Intel and Google said they were planning to disclose the issue next week when fixes will be available.

The fix will change the way the program attains memory for its processes. Some anti-virus vendors will also need to update their software to work correctly with the new patches, as the changes are related to Kernel-level access. The paper also goes on to confirm that Meltdown is limited to Intel processors. And this time, it's a big one. Unfortunately, this involves reducing the overall performance of the operating system.

Microsoft did not immediately respond to a request for comment.

A second vulnerability, dubbed Spectre, also affects AMD and ARM computer chips, and could allow hackers to steal data from the computer's memory that is normally kept in isolation. The reasons for this can be manifold.

"We used our VM Live Migration technology to perform the updates with no user impact, no forced maintenance windows and no required restarts", Sloss added. Have a peek are our full statements article for the whole bunch. Intel CPUs are particularly affected since the Meltdown vulnerability is apparently specific to them. However, owners of Google Chrome OS and Android devices are advised to take necessary actions.

Exploiting vendor trust and disrupting the supply chain are tactics malicious actors are sure to capitalize on in 2018.

According to AppleInsider, "multiple sources within Apple" have said that updates made in macOS 10.13.2 have mitigated "most" security concerns associated with the CPU vulnerability.

According to The Verge, the Windows update for this issue will be released at 5PM Eastern Time, 4PM Central Time, 2PM Pacific.

Public cloud providers AWS and Microsoft have scheduled reboots to address the problem over the course of the next few days.

Otras noticias

Tendencias Ahora

'The Last Jedi': The Bore is Strong with This One
Mark Hamill had a "fundamental difference" with Rian Johnson's take on Luke Skywalker in " Star Wars: The Last Jedi ". It's not just a more honest, challenging story, it's also a reminder of what made them heroes in the first place.

Nokia 6 Gets First Android Oreo Beta With Dec. Security Patch
The Nokia Android 8.0 Oreo beta program started out with the Nokia 8 , it was then expanded to the Nokia 5 and now the Nokia 6 . A previous rumor did suggest that the Nokia could have 4GB of RAM, so that's very much a possibility at this point.

Abbas snubs US Vice President Pence over Jerusalem move
'Sneaky thief, ' the man can be heard saying, according to the Times of Israel , before sarcastically adding: 'To your health. The protest in Jakarta, organised by the Islamist Prosperous Justice Party, was the second since Mr Trump's decision.

Justin Simmons likely out for year after hurting ankle while celebrating
They can only play for pride and contract incentives going forward. "It's the first team I played for", Kerr said of the Colts. It's well known that NFL teams watch film of their upcoming opponent each week to game plan for what they're going up against.

Trump's FCC kills net neutrality, opening internet 'fast lanes' to ISPs
Consumers should watch how their ISP responds to this over the next months and years. House of Representatives will be up for grabs, as will 34 seats in the Senate.

Jamie Carragher explains why Manchester City are ahead of Manchester United
But by the end of August, around the time the transfer window closed, Guardiola finally decided that enough was enough. However, Guardiola highlighted defender Nicolas Otamendi's contributions as the key reason for their recent success.

Real Madrid 5-0 Sevilla — Demolition job
It could have been worse for the visitors when, during a low-key second half, Karim Benzema saw his header hit the woodwork. "I was clearly better".

AAA projects busiest holiday travel season on record
The London-based business information provider teamed with AAA in 2009 to jointly analyze travel trends during major holidays. Do Not Respond! Avoid eye contact, don't make gestures, maintain space around your vehicle and contact 9-1-1 if needed.

Trump signs US$1.5 trillion tax overhaul into law
And as the very rich are also the very few, in a one-man, one-vote democracy the Democratic Party will always have a following. That would delay the automatic cuts until 2019 and give Congress more time to try again on a waiver. "This is not America".

Manchester United 0-0 Southampton: Red Devils rated and slated
Southampton will look for a result against Manchester United , with only two points separating them from the relegation zone. Pellegrino revealed he had been studying United's performance against Burnley in the hope of pulling off a similar success.