Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
Just watched the first two minutes of Intel's CEO keynote. I didn't hear the word sorry or aplogize. Just see Intel not taking any blame with the slide that shows all CPU architectures are vulnerable. Brian also doesn't strike me as a likeable or sympathic guy. I don't see him doing well in crisis control mode in public scrutiny.
https://www.youtube.com/watch?v=f71yokde704
My E8400 is vulnerable. Patch for Lubuntu is supposed to be released Jan 9.
Spectre and Meltdown mitigation detection tool v0.17
Checking for vulnerabilities against live running kernel Linux 4.13.0-17-generic #20-Ubuntu SMP Mon Nov 6 10:04:08 UTC 2017 x86_64
Will use vmlinux image /boot/vmlinuz-4.13.0-17-generic
Will use kconfig /boot/config-4.13.0-17-generic
Will use System.map file /boot/System.map-4.13.0-17-generic
CVE-2017-5753 [bounds check bypass] aka 'Spectre Variant 1'
* Kernel compiled with LFENCE opcode inserted at the proper places: NO (only 42 opcodes found, should be >= 70)
> STATUS: VULNERABLE
CVE-2017-5715 [branch target injection] aka 'Spectre Variant 2'
* Mitigation 1
* Hardware (CPU microcode) support for mitigation: NO
* Kernel support for IBRS: NO
* IBRS enabled for Kernel space: NO
* IBRS enabled for User space: NO
* Mitigation 2
* Kernel compiled with retpoline option: NO
* Kernel compiled with a retpoline-aware compiler: NO
> STATUS: VULNERABLE (IBRS hardware + kernel support OR kernel with retpoline are needed to mitigate the vulnerability)
CVE-2017-5754 [rogue data cache load] aka 'Meltdown' aka 'Variant 3'
* Kernel supports Page Table Isolation (PTI): NO
* PTI enabled and active: NO
> STATUS: VULNERABLE (PTI is needed to mitigate the vulnerability)
Some serious security bug in INTEL CPUs?? Since Westmere possibly
Collapse
X
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
Walking around the neighborhood, I can see plenty of cases where NM cable is stapled to the exterior of facia boards without even running it through conduit or liquid-tight. But, an inspector driving by isn't going to get out of his car and write the guy up -- they'll wait for the house to catch fire from some other cause...
And, there are plenty of licensed electricians who will gladly look the other way if financially motivated.Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
oooo.....
i bet Intel paid a lot for this "feature" to be included.
it's just too perfect to be an accident.
http://www.theregister.co.uk/2018/01...d_powered_pcs/
so now they can tell people to stick with "reliable" Intel shit!!Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
land-of-the-free.
you need to do a bit more swamp-draining.
pretty damned funny considering some of the dangerous crap that is permissable or common.
like insulation-displacement connectors and those laughable domestic power outlets.Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
Oh my, glad we have normal line voltage here and while the laws and regulations are also sack of shit already, it's still not so bad. Yet.Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
E.g., I wanted to put a 220V 60A outlet by the air conditioner compressor and a "plug" on the end of the cable to the compressor. Plug the compressor into the outlet, arrange for the outlet to be encased in a weatherproof housing, etc.
Then, put a similar plug on our electric kiln.
When we wanted to use the kiln, unplug the compressor and plug the kiln into the circuit. Instead of running a separate circuit for just the kiln (which is rarely used).
Electrically, everything is kosher -- kiln doesn't draw more than the branch circuit is rated, grounding issues are correct, weatherproofing, etc.
But, local Code doesn't allow this. Compressor must be on a dedicated circuit... a circuit dedicated to the compressor (not "generic 220V 60A loads").
Likewise, wanted to put an electric "instant" hot water heater located under the sink on the kitchen circuit. Had to run a separate circuit for it as the counter circuits are not to support any "fixed appliances".
In each case, everything would work as expected, circuit breakers (and GFCI's) would provide required protections, etc. but Code doesn't allow.
I am free to ignore that and do as I please -- until something goes wrong and I'm found to be out of compliance (will insurer pay if signs of obvious code violations? how long will city give me to have a LICENSED electrician bring things up to Code? will they allow occupancy while that is happening? etc.)
OTOH, it is normal for an oven or a clothes dryer to have a 30+A 220V outlet to connect the appliance. And, there's no law against operating a server out of your kitchen or laundry room in lieu of said appliance (it just "looks odd")Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
code??
those are globally recognised standard connectors with all the usual aprovals.
go down to your nearest McDonalds and see them hanging from the ceiling.
(just dont eat the "food")Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
It's not a question of having the skillset and components to "make it work" but, rather, the legal/liability consequences of doing things that aren't to Code.
Of course, you can do damn near anything you want inside your home -- no one is going to come knocking to inspect it! OTOH, have a fire or similar and you can't roll back time to undo those Code violations so they aren't visible to the insurance/fire "incident" inspectors.
[Of course, there's a REASON for all those Code requirements/constraints so you should be asking yourself, "what do the writers know that I don't?"]Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
if you do your own wiring, fit some 16A CEE17 connectors.
http://cpc.farnell.com/pce/113-6/16a...skt/dp/PL15600
http://cpc.farnell.com/pce/313-6/p-m...30v/dp/PL15608
http://cpc.farnell.com/pce/013-6/plu...30v/dp/PL15567
i just picked up a couple of IP67 ones for the gardenLeave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
- electric stove/range (if you cook with electric)
- air conditioner (typ central air as MOST window units are 110)
- clothes dryer (if you don't use gas)
A (central) air conditioner is a dedicated branch circuit and won' t have an "outlet" that you can conveniently access.
The outlets behind the stove/oven and dryer require moving a large appliance to gain access. Most homes can live without a functioning dryer (AND a dryer that has been moved away from the wall to gain access) but pulling the stove/oven out usually meets with some stiff resistance (from female household members).
Some homes are wired with 12/3 w/GND in their kitchens. As such, you can conceivably access both legs from any outlet (half of the outlets are wired to one leg while the other half are wired to the other -- a net saving in copper). And, the countertop branch circuits must be 20A so this ensures you can feed the 2KW power supply in the server. But, any semi-permanent arrangement (i.e., something that you could use, again) like this would probably raise lots of eyebrows with building inspectors (and fire marshalls in the event of a fire... in someplace like a KITCHEN!)
Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
In the Americas, at least north America and central America, (probably) use 2 120 V legs for 240 V.Last edited by RJARRRPCGP; 01-07-2018, 04:05 PM.Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
I do wonder how much slower it'd get if I set up full disk encryption on it, along with the pending recompile of all binaries so I can keep up with the linux distribution (it's the cost of not requiring a reinstall every few years and stlil stay up to date)...Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
No, it also relies on having access to a sense of time and the ability to run arbitrary/untrusted binaries directly on the hardware. Deny any of these and the exploit falls apart.Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
I think each of the fans ("blowers") draws 50W...Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
Lol, you're not kidding. It was an amazing bit of kit back in the day though. Mobile computing anywhere and it's wasn't the weight of a brick.Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
Spectre 1 but that is something that hits ALL CPUs with speculative excecution...
But _NOT_ Spectre 2 and not Meltdown...
So it would be nice if we would stick to the facts and not try to downplay this shit.Leave a comment:
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
From what we know right now, it seems that it isn't as bad as with Linux.
The Security Scientists said something like everything under Linux could be read and most things under Windows.
Most is a bit better than everything.Leave a comment:
-
-
Re: Some serious security bug in INTEL CPUs?? Since Westmere possibly
I also have an N270 Atom in my eeePC. I'm glad, it doesn't need to get any slower than it already is...
I need to rebuild all its binaries too, ugh. The pains of running a source based distribution that decided to make an across-the-board change...
----
Yes, the R10K will need to be tested. I think the R4000/R4400 were scalar and shouldn't have these issues.
----
And I just patched my i7 (linux) for Meltdown... it's not dastardly slower, fortunately. Unsure about Spectre yet. On the good side, machines that don't constantly download code (or is forced to download code) is "safe" for now - so fixed job (i.e. not ssh or other shell box type) servers are OK to leave unpatched temporarily. Client machines and shell boxes, however, must be patched ASAP as likely they will be fed new code on a continual basis (like javascript...)Last edited by eccerr0r; 01-07-2018, 03:53 AM.Leave a comment:
-
Leave a comment:
Related Topics
Collapse
-
Hi guys!
I have a Dell Optiplex 760 USFF (Ultra-Small Form-Factor).
It currently only supports Dual-Core CPUs and will halt with an error message, when a QuadCore is installed.
I have seen people running QuadCores in these machines, but the BIOS needs to be modded.
Since I have not found the modded BIOS to download anywhere, I am asking you guys for help:
Could you please add support for QuadCore CPUs (in my case the Core2Quad Q9550) to the BIOS?
I have attached the Dump of my machine.
S/N: SRW2K4J
Reg Model: DCTR...-
Channel: BIOS & Schematic Requests!
09-27-2024, 02:43 AM -
-
by ducky29Hello. I mostly do small electronics and tv repairs. I am confident with small bga chips but I never was successful with removing large chips especially cpus. Is it possible to remove them just using a preheater and hot air gun or I need something more advanced like a bga machine with temperature profiles, cooling fans, etc etc.
Any suggestion on aliexpress/ebay are welcomed. I am on a tight budget, max I can do is about 200$. Please anyone with more experience can give me some suggestions?
Thanks in advance.09-23-2024, 03:56 PM -
by ugamazingI have been working to develop a consistent and reliable method/workflow for removing, re-balling, and replacing CPUs on various MacBook Pro models (2015-2020).
I have done OK so far, but there's one detail I need to sort out. I'm hoping someone much more experienced than myself may be able to shed some light:
I am noticing the pulled CPUs (to be re-balled) come off fine, and they "look" fine as well, immediately when I pull them. However, within a few minutes, after cooling, the CPU chips develop a very, very slight curve/bend. It's SO SLIGHT, maybe a 1-2%... -
by bigbearkAccordng to the ASUS website, if you apply BIOS 5001 you can use Socket AM3 CPUs on the M2N-E motherboard.
I have two of these boards that are working. The CPU support info on the ASUS site says you can use ATHLON II X2 CPUs, Athlons II X3, and even Athlon II X4 CPUs.
These CPUs seem to be readily available at reasonable prices. There are some that consume as little as 45 watts.
The notes say "Due to Bios ROM size limitation remove LAN PXE ROM and change Crashfree3 to Crashfree".
I assume these are options in the BIOS setup you can... -
by Alfiehhey Im very new to repairing electronics with capacitors as well as using a multimeter so I need so help/guidance fixing this issue
recently I was handed a family members old NAD C320BEE that they had in their loft for storage for a few years but when powered on it went into power safety mode due to a problem on the protection circuit somewhere before it went into storage I was told it worked fine I found lots of people online talking about how the capasitors are known to be pretty bad in this model and can cause this issue the only problem being I don't have much experience sorting...-
Channel: Troubleshooting Audio Equipment
-
- Loading...
- No more items.
Leave a comment: