I wonder, who ever uses these "management engines," let alone put them open on WANs? When first news of IME being compromised, I was surprised that Shodan showed such a small number of machines.
Intel patches new ME vulnerabilities
11–20 of 337 posts
Re: Intel patches new ME vulnerabilities
#12Re: Intel patches new ME vulnerabilities
#13Re: Intel patches new ME vulnerabilities
#14I wonder, who ever uses these "management engines," let alone put them open on WANs? When first news of IME being compromised, I was surprised that Shodan showed such a small number of machines.
I'm still not sure if it was an early 2000s fad that nobody really thought about, or it was deliberate (and if so, why).
Re: Intel patches new ME vulnerabilities
#15Intel advisory: https://www.intel.com/content/www/us/en/security-center/advi... CVE-2018-3628 - "Buffer overflow in HTTP handler" Affected processor list (simplified reordered by me to reflect relevance and improve readability): • Core i3/i5/i7, generation 1-8 (that is, all of them) • Xeon E3-1200 v5/v6 • Xeon Scalable • Xeon W • Core 2 Duo vPro, Centrino 2 vPro
Re: Intel patches new ME vulnerabilities
#16Earlier quoted context omitted.
My i7-2600 is still a beast (well, still gong strong anyway). They did the same thing with Meltdown/Spectre fixes.
Grandpa, it's time to upgrade.
Nothing about me opening a text editor, interpreting most code, or compiling the occasional thing require anywhere near that much power.
For the overwhelming majority, and i really mean overwhelming, there's really no progress or point to upgrading anything except the gpu in the past 7 years or so
in laptops, new stuff uses a LOT less power for the same speed, so there's that I guess.
Re: Intel patches new ME vulnerabilities
#17Re: Intel patches new ME vulnerabilities
#18My CPU has an HTTP server? But why?