Select Page

The nightmare lasts, AMD and ARM have failed too!

The nightmare lasts, AMD and ARM have failed too!

Google security researchers they poured clear water into the glass, the situation is much worse than we have known so far.

The nightmare lasts, AMD and ARM have failed too!

First of all, it is worth clarifying that, unfortunately, several vulnerabilities have been identified, you need to know the following:

  • Variant 2017: bounds check bypass (CVE-5753-XNUMX)
  • Variant Two: branch target injection (CVE-2017-5715)
  • Third Variant: rogue data cache load (CVE-2017-5754)

The first two were called Specter and the third was called Meltdown. The latter vulnerability exists in Intel processors and allows hackers to access data stored in memory, such as stealing passwords. More on this the day before yesterday reported, the problem is manifested in reading the kernel memory at the user level. The second vulnerability, named Specter, is found in Intel, AMD, and ARM integrated circuits, which also allow attackers to obtain critical information. 

xmeltdown specter

The first statements were in place

Let's start with AMD. THE communication according to the first vulnerability (CVE-2017-5753), they are also affected, but keeping the operating system up-to-date, along with updated software, of course, fixes the issue and the fix is ​​a negligible slowdown. The second vulnerability has not yet been demonstrated with the company’s products, and chances are it will remain so. They are completely protected against the third variant due to the different architecture, at least according to their claim.

Intel has chosen a completely different strategy. Brian Krzanich, the company’s CEO, stressed that the case affects all laptops, desktops, smartphones, tablets and internet servers, affects everything, but from product to product differently. The communication then tries for a long time to alleviate the weight of the problem, to “spread the damage” by mentioning competitors, in short, it thoroughly exhausts the vocabulary. 

In the end, we can say that it is worth keeping your computer up to date by turning on automatic updates, as this is a very serious incident. Other things cannot be done at this time.

About the Author