Tag

Cpu Vulnerability

All articles tagged with #cpu vulnerability

technology1 year ago

"Apple Silicon Vulnerability Exposes Crypto Keys to 'GoFetch' Attack"

A new side-channel attack called "GoFetch" targets Apple M1, M2, and M3 processors, allowing attackers to steal secret cryptographic keys from the CPU's cache. The attack exploits a hardware vulnerability in the data memory-dependent prefetchers (DMPs) found in these CPUs, making it difficult to fix with a hardware solution. While software fixes could mitigate the issue, they would impact the CPUs' cryptographic functions. Apple owners are advised to practice safe computing habits and await potential security updates from Apple.

hardware-security2 years ago

"Reptar CPU Vulnerability: Intel Patches High-Severity Flaw Impacting Multi-Tenant Virtualized Environments"

Intel has released fixes for a high-severity CPU vulnerability called Reptar, affecting desktop, mobile, and server CPUs. The flaw, tracked as CVE-2023-23583, could allow privilege escalation, information disclosure, and denial of service via local access. Exploiting the vulnerability in a multi-tenant virtualized environment could crash the host machine, causing a denial of service to other guest machines. Intel has published updated microcode for all affected processors, and there is no evidence of active attacks using this vulnerability.