Results 1 to 6 of 6

Thread: US-CERT discloses security flaw in Intel chips

  1. #1
    Senior Member HalloweenJack's Avatar
    Join Date
    Mar 2010
    Posts
    1,444
    Thanks
    22
    Thanked
    86 times in 69 posts
    • HalloweenJack's system
      • Motherboard:
      • Gigabyte GA-770TA-UD3
      • CPU:
      • Phenom 1090T @3.6ghz
      • Memory:
      • 2 x Corsair XMS3 1600mhz ram
      • Storage:
      • Crucial M4 128GB SSD + 1xMaxtor 750GB storage
      • Graphics card(s):
      • PCS+ HD 7870
      • PSU:
      • Hiper-R 770/990 peak
      • Case:
      • Lian-li aluminium job ;)
      • Operating System:
      • windows 7 home
      • Monitor(s):
      • LG Flatron 22"
      • Internet:
      • sky fibre 40/10 mbit

    US-CERT discloses security flaw in Intel chips

    http://www.csoonline.com/article/708...in-intel-chips

    June 15, 2012— CSO— The U.S. Computer Emergency Readiness Team (US-CERT) has disclosed a flaw in Intel chips that could allow hackers to gain control of Windows and other operating systems, security experts say.

    The flaw was disclosed the vulnerability in a security advisory released this week. Hackers could exploit the flaw to execute malicious code with kernel privileges, said a report in the Bitdefender blog.

    best not use Intel CPU`s with AMD video cards - you`ll have the marines kicking down your door !!

  2. #2
    Senior Member kalniel's Avatar
    Join Date
    Aug 2005
    Posts
    21,738
    Thanks
    730
    Thanked
    1,894 times in 1,531 posts
    • kalniel's system
      • Motherboard:
      • Gigabyte X58A UD3R rev 2
      • CPU:
      • Intel i7 950
      • Memory:
      • 12gb DDR3 2000
      • Graphics card(s):
      • AMD HD7870
      • PSU:
      • XFX Pro 650W
      • Case:
      • Cooler Master HAF 912
      • Operating System:
      • Win 7 Pro x64
      • Monitor(s):
      • Dell U2311H
      • Internet:
      • O2 8mbps

    Re: US-CERT discloses security flaw in Intel chips

    What have AMD video cards go to do with anything?

    But as usual, this was already patched so it only affects people who aren't updating windows:

    http://technet.microsoft.com/en-us/s...letin/MS12-042

    The vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted application that exploits the vulnerability. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability. The vulnerability could not be exploited remotely or by anonymous users.

  3. #3
    "make it so" scaryjim's Avatar
    Join Date
    Jan 2009
    Location
    Manchester
    Posts
    9,244
    Thanks
    726
    Thanked
    1,145 times in 1,009 posts
    • scaryjim's system
      • Motherboard:
      • Asus M4A785TD-M EVO
      • CPU:
      • Phenom II X4 905e
      • Memory:
      • 2x 4GB Crucial Ballistix Tactical VLP
      • Storage:
      • 750GB Seagate
      • Graphics card(s):
      • Sapphire 7750 Low Profile
      • PSU:
      • FSP 250W TFX
      • Case:
      • AOpen H360b
      • Operating System:
      • Windows 7 Professional x64
      • Monitor(s):
      • IBM ThinkVision C220P (6735-60N) (22" CRT)

    Re: US-CERT discloses security flaw in Intel chips

    I know it's linked from the original article, but I don't see how that MS bulletin can relate to the same vulnerability. The MS bulletin addresses a vulnerability in Windows that can be triggered on both 32bit and 64bit (x64 *and* IA64) versions, whereas the Intel issue discussed in the CSO article *only* affects 64bit operations, *only* affects Intel EM64T CPUs (not Itanium ones), and can be triggered from free/netBDS as well as Windows. So, mega-link-fail, CSO!

  4. #4
    Senior Member kalniel's Avatar
    Join Date
    Aug 2005
    Posts
    21,738
    Thanks
    730
    Thanked
    1,894 times in 1,531 posts
    • kalniel's system
      • Motherboard:
      • Gigabyte X58A UD3R rev 2
      • CPU:
      • Intel i7 950
      • Memory:
      • 12gb DDR3 2000
      • Graphics card(s):
      • AMD HD7870
      • PSU:
      • XFX Pro 650W
      • Case:
      • Cooler Master HAF 912
      • Operating System:
      • Win 7 Pro x64
      • Monitor(s):
      • Dell U2311H
      • Internet:
      • O2 8mbps

    Re: US-CERT discloses security flaw in Intel chips

    Maybe it's just the case that that fix also addresses the issue US-CERT are talking about, in Windows at least.

  5. #5
    Senior Member HalloweenJack's Avatar
    Join Date
    Mar 2010
    Posts
    1,444
    Thanks
    22
    Thanked
    86 times in 69 posts
    • HalloweenJack's system
      • Motherboard:
      • Gigabyte GA-770TA-UD3
      • CPU:
      • Phenom 1090T @3.6ghz
      • Memory:
      • 2 x Corsair XMS3 1600mhz ram
      • Storage:
      • Crucial M4 128GB SSD + 1xMaxtor 750GB storage
      • Graphics card(s):
      • PCS+ HD 7870
      • PSU:
      • Hiper-R 770/990 peak
      • Case:
      • Lian-li aluminium job ;)
      • Operating System:
      • windows 7 home
      • Monitor(s):
      • LG Flatron 22"
      • Internet:
      • sky fibre 40/10 mbit

    Re: US-CERT discloses security flaw in Intel chips

    Quote Originally Posted by kalniel View Post
    What have AMD video cards go to do with anything?

    But as usual, this was already patched so it only affects people who aren't updating windows:

    http://technet.microsoft.com/en-us/s...letin/MS12-042

    http://www.kb.cert.org/vuls/id/458153

    AMD drivers have a security hole as well

  6. #6
    Senior Member kalniel's Avatar
    Join Date
    Aug 2005
    Posts
    21,738
    Thanks
    730
    Thanked
    1,894 times in 1,531 posts
    • kalniel's system
      • Motherboard:
      • Gigabyte X58A UD3R rev 2
      • CPU:
      • Intel i7 950
      • Memory:
      • 12gb DDR3 2000
      • Graphics card(s):
      • AMD HD7870
      • PSU:
      • XFX Pro 650W
      • Case:
      • Cooler Master HAF 912
      • Operating System:
      • Win 7 Pro x64
      • Monitor(s):
      • Dell U2311H
      • Internet:
      • O2 8mbps

    Re: US-CERT discloses security flaw in Intel chips

    Interesting, presumably the protection isn't enabled by default on nVidia drivers either given the requirement to enable it in registry.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •