Re: Another security vulnerability

Liste des GroupesRevenir à c arch 
Sujet : Re: Another security vulnerability
De : mitchalsup (at) *nospam* aol.com (MitchAlsup1)
Groupes : comp.arch
Date : 10. Jun 2024, 23:09:26
Autres entêtes
Organisation : Rocksolid Light
Message-ID : <c36f95bfd4d44e91e9c680e5b4fee2d7@www.novabbs.org>
References : 1 2 3 4 5 6 7 8 9
User-Agent : Rocksolid Light
EricP wrote:

MitchAlsup1 wrote:
I am resurrecting this thread to talk about a different cache that may or may not be vulnerable to Spectré like attacks.
 Consider an attack strategy that measures whether a disk sector/block
is in (or not in) the OS disk cache. {Very similar to attacks that
figure out if a cache line is in the Data Cache (or not).}
 Any ideas ??

It won't be vulnerable to a direct speculation attack because
the cpu does not trigger page faults on mispredicted paths.
Effectively, the CPU puts the PAGEFAULT into the execution pipeline
and only takes the exception if it reaches the retire point without
getting flushed by a mispredict repair.

So you can't use the presence in a file cache to probe code paths
or data values to leak secrets.

Also the 4kB resolution would be problematic to correlate back to
particular branches taken and infer secret values.
That just slows down the rate of (BW) of the inference, and does
nothing
about closing any existing hole.

Date Sujet#  Auteur
4 Jun 24 * Re: Another security vulnerability11MitchAlsup1
5 Jun 24 +* Re: Another security vulnerability9Anton Ertl
10 Jun 24 i`* Re: Another security vulnerability8MitchAlsup1
10 Jun 24 i +* Re: Another security vulnerability6Stephen Fuld
11 Jun 24 i i`* Re: Another security vulnerability5MitchAlsup1
11 Jun 24 i i `* Re: Another security vulnerability4Stephen Fuld
11 Jun 24 i i  `* Re: Another security vulnerability3Terje Mathisen
11 Jun 24 i i   `* SSDs (was: Another security vulnerability)2Stefan Monnier
11 Jun 24 i i    `- Re: SSDs1Chris M. Thomasson
11 Jun 24 i `- Re: Another security vulnerability1MitchAlsup1
10 Jun 24 `- Re: Another security vulnerability1MitchAlsup1

Haut de la page

Les messages affichés proviennent d'usenet.

NewsPortal