Reading privileged memory with a side-channel
61–70 of 639 posts
Re: Reading privileged memory with a side-channel
#62Can someone with a little more experience this low-level let me know if this is as bad as I think it is? Because this looks real bad: > Reading host memory from a KVM guest
Re: Reading privileged memory with a side-channel
#63So, is AMD effected or not? This seems fairly important. The Google blog post sort of goes against itself in this regard. AMD itself has said: "The threat and the response to the three variants differ by microprocessor company, and AMD is not susceptible to all three variants. Due to differences in AMD's architecture, we believe there is a near zero risk to AMD processors at this time." So either AMD is lying or Goog…
It seems like it is not affected by the most serious bug, but may be by a lesser one.
Re: Reading privileged memory with a side-channel
#64Re: Reading privileged memory with a side-channel
#65Speculative execution seems like something that would be very intuitively insecure even to a layperson(relative to the field of course). I'm wondering, was this vulnerability theorized first and later found out to be an actual vulnerability? Or was this something that nobody had any clue about? I'm only saying this, because from a security perspective, I imagine somewhere at some point very early on someone had to ha…
Re: Reading privileged memory with a side-channel
#66Could somebody please coin a name for this? Wikipedia currently calls it "Intel KPTI flaw", but that is very vague. It's quite difficult to talk about something without a simple easy-to-remember name. Edit: has been settled, it's https://en.wikipedia.org/wiki/Meltdown_(security_bug) .
Re: Reading privileged memory with a side-channel
#67Re: Reading privileged memory with a side-channel
#68Re: Reading privileged memory with a side-channel
#69Could somebody please coin a name for this? Wikipedia currently calls it "Intel KPTI flaw", but that is very vague. It's quite difficult to talk about something without a simple easy-to-remember name. Edit: has been settled, it's https://en.wikipedia.org/wiki/Meltdown_(security_bug) .
Re: Reading privileged memory with a side-channel
#70"Testing also showed that an attack running on one virtual machine was able to access the physical memory of the host machine, and through that, gain read-access to the memory of a different virtual machine on the same host." Holy shit.
For home computer, standard office use, there is no impact at this point, right?