Opened 13 months ago

Last modified 7 months ago

#14673 new bug

Mitigate L1TF (Intel processor vulnerability)

Reported by: waddlesplash Owned by: nobody
Priority: normal Milestone: Unscheduled
Component: System/Kernel Version: R1/Development
Keywords: security Cc: axeld, korli
Blocked By: Blocking:
Has a Patch: no Platform: All

Description

This is actually both a worse vulnerability than Meltdown, and easier to mitigate, requiring only a change in how we set flags on page tables: https://blogs.technet.microsoft.com/srd/2018/08/14/analysis-and-mitigation-of-l1-terminal-fault-l1tf/

Actually it may already be "mitigated", I just don't know enough to investigate properly.

Change History (2)

comment:1 by waddlesplash, 13 months ago

Cc: axeld korli added

comment:2 by waddlesplash, 7 months ago

Keywords: security added
Summary: Mitigate LT1F (Intel processor vulnerability)Mitigate L1TF (Intel processor vulnerability)
Note: See TracTickets for help on using tickets.