[DISCUSSION] Meltdown and Spectre

Discussion in 'PC Hardware' started by scaramonga, Jan 3, 2018.

  1. Mikorist

    Mikorist MDL Member

    Joined:
    Dec 26, 2012
    Messages:
    205
    Likes Received:
    145
    Trophy Points:
    10
  2. Yen

    Yen Admin (retired) Staff Member

    Joined:
    May 6, 2007
    Messages:
    13,128
    Likes Received:
    14,229
    Trophy Points:
    340
  3. Mikorist

    Mikorist MDL Member

    Joined:
    Dec 26, 2012
    Messages:
    205
    Likes Received:
    145
    Trophy Points:
    10
  4. Yen

    Yen Admin (retired) Staff Member

    Joined:
    May 6, 2007
    Messages:
    13,128
    Likes Received:
    14,229
    Trophy Points:
    340
  5. Mikorist

    Mikorist MDL Member

    Joined:
    Dec 26, 2012
    Messages:
    205
    Likes Received:
    145
    Trophy Points:
    10
    Yep. This is not recommended on production server.

    But at home I really not care . Have multi-booting . Windows10 , MacOS, Ubuntu Studio, CentOS and Puppy Linux at same machine :p
     
  6. taviruni

    taviruni MDL Senior Member

    Joined:
    May 8, 2010
    Messages:
    261
    Likes Received:
    249
    Trophy Points:
    10
    #106 taviruni, Jan 10, 2018
    Last edited: Jan 10, 2018
    Or in other words VMware program did work (as I confirmed), but in file "microcode-20180108.tgz" Intel Microcode Data File for my i3 3225 was not patched for this vulnerabilities. So this means Intel is launching this file "microcode-20180108.tgz" to public and not all Microcode Data have been updated to fix this vulnerabilities and no mention to this on download page.
    INTEL HAS LOST ALL CREDIBILITY FOR ME.
     
  7. asabater

    asabater MDL Member

    Joined:
    Sep 6, 2008
    Messages:
    195
    Likes Received:
    71
    Trophy Points:
    10
  8. Mikorist

    Mikorist MDL Member

    Joined:
    Dec 26, 2012
    Messages:
    205
    Likes Received:
    145
    Trophy Points:
    10
    #108 Mikorist, Jan 10, 2018
    Last edited: Jan 10, 2018
    You can (not) imagine what will happen when they start to compromise ALL Amazon AWS servers with Spectre.

    Shared cloud's kernel and memory is the biggest problem here.

    I already see the lawsuit of Amazon to Intel. And Google too...And everyone else.
     
  9. VDev

    VDev MDL Member

    Joined:
    Sep 9, 2015
    Messages:
    133
    Likes Received:
    71
    Trophy Points:
    10
  10. Yen

    Yen Admin (retired) Staff Member

    Joined:
    May 6, 2007
    Messages:
    13,128
    Likes Received:
    14,229
    Trophy Points:
    340
  11. asabater

    asabater MDL Member

    Joined:
    Sep 6, 2008
    Messages:
    195
    Likes Received:
    71
    Trophy Points:
    10
  12. Mikorist

    Mikorist MDL Member

    Joined:
    Dec 26, 2012
    Messages:
    205
    Likes Received:
    145
    Trophy Points:
    10
  13. Yen

    Yen Admin (retired) Staff Member

    Joined:
    May 6, 2007
    Messages:
    13,128
    Likes Received:
    14,229
    Trophy Points:
    340
    Which one was your previous kernel version which has still worked?
     
  14. asabater

    asabater MDL Member

    Joined:
    Sep 6, 2008
    Messages:
    195
    Likes Received:
    71
    Trophy Points:
    10
    4.4.0-104

    i'm at it with shift boot at this moment
     
  15. VDev

    VDev MDL Member

    Joined:
    Sep 9, 2015
    Messages:
    133
    Likes Received:
    71
    Trophy Points:
    10
  16. Yen

    Yen Admin (retired) Staff Member

    Joined:
    May 6, 2007
    Messages:
    13,128
    Likes Received:
    14,229
    Trophy Points:
    340
    It seems 108 is a 'bad' one...
    Well when updating kernel one can encounter issues. 109 seems to have fixed that...
    There are still works on Kernel Address Isolation to have Side-channels Efficiently Removed (KAISER) which is a function to prevent exploits...

    I am on the 4.4 tree as well but have not tried any update yet...I actually wanted to go for the 4.4.110....

    ATM I have no patch running....since the read rate of meltdown is guessed like 500 KB/second and through spectre far less I do just reboot my system after I did sensitive transactions just like banking..

    In the meantime I try to stay informed until I can notice a reasonable concept and a reasonable combination of measures which do really make sense.
     
  17. asabater

    asabater MDL Member

    Joined:
    Sep 6, 2008
    Messages:
    195
    Likes Received:
    71
    Trophy Points:
    10
    many thanks Yen, i'm very happy with you here a lot of years
     
  18. Daz

    Daz MDL Developer

    Joined:
    Jul 31, 2009
    Messages:
    9,530
    Likes Received:
    67,286
    Trophy Points:
    300
  19. VDev

    VDev MDL Member

    Joined:
    Sep 9, 2015
    Messages:
    133
    Likes Received:
    71
    Trophy Points:
    10
  20. taviruni

    taviruni MDL Senior Member

    Joined:
    May 8, 2010
    Messages:
    261
    Likes Received:
    249
    Trophy Points:
    10
    #120 taviruni, Jan 10, 2018
    Last edited: Jan 10, 2018