jeff via plug on 11 Apr 2024 06:31:57 -0700
|
[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]
[PLUG] Spectre v2 exploit against kernel
|
- From: jeff via plug <plug@lists.phillylinux.org>
- To: Philadelphia Linux User's Group Discussion List <plug@lists.phillylinux.org>
- Subject: [PLUG] Spectre v2 exploit against kernel
- Date: Thu, 11 Apr 2024 09:31:51 -0400
- Authentication-results: smtp04.aqua.email-ash1.sync.lan smtp.user=<hidden>; auth=pass (LOGIN)
- Dkim-signature: v=1; a=rsa-sha1; d=op.net; s=20180222; c=relaxed/simple; q=dns/txt; i=@op.net; t=1712842311; h=From:Subject:Date:To:MIME-Version:Content-Type; bh=jBCSisJRamod2x9z5ft/90+S0QQ=; b=E9PfgyuTHCQNp1MmYus0F9IjArdflrgoauMovXFupwY9gGLwSCgxj8kalurOuOk3 5ApodI/I3YOCB1ufqVso+faFOEhAV5+lGPLa2Ie/DsOj37efgzhkO0j+/qr7AqTw ASAIitLSPAKlNKFBl5tuTFN2LcxrKUMd7pXli5u2NuqoDOb6ok0j+dfU2cGf+VjC Vzm9Q7Hf3YXjkUoK5UQKllaqnLZAIaO7+Oov3RtyQQ7S6OKmWQQ5rYndfhv/lIyZ 3o+118fHyqdlq1P9dHTVzFY7oQ/buAfQnuDJYmUmPtZk9v+a5xouaTQSgEHfew8l FfRVcRRo2wOVhjyP0j6OQQ==;
- Reply-to: jeff <jeffv@op.net>
- Sender: "plug" <plug-bounces@lists.phillylinux.org>
- User-agent: Mozilla Thunderbird
Researchers Uncover First Native Spectre v2 Exploit Against Linux Kernel
https://thehackernews.com/2024/04/researchers-uncover-first-native.html
The exploit, called Native Branch History Injection (BHI), can be used
to leak arbitrary kernel memory at 3.5 kB/sec by bypassing existing
Spectre v2/BHI mitigations, researchers from Systems and Network
Security Group (VUSec) at Vrije Universiteit Amsterdam said in a new study.
___________________________________________________________________________
Philadelphia Linux Users Group -- http://www.phillylinux.org
Announcements - http://lists.phillylinux.org/mailman/listinfo/plug-announce
General Discussion -- http://lists.phillylinux.org/mailman/listinfo/plug