Intel chip vulnerability: a wide range of emergency patches

This article is produced by NetEase Smart Studio (public number smartman 163). Focus on AI and read the next big era!

[Netease smart news January 4 news] Recently, according to foreign media reports, Intel chips have serious security holes, and patch software to correct this defect will affect the performance of the chip, after the news, Intel stocks opened before the market on Wednesday Falling 2%, the stock of old rival AMD rose 7% before the market opened. At present, Intel responded that pushing software and firmware to solve problems next week, media reports are incorrect.

What happened to Intel's chip?

It is understood that security researchers found two key vulnerabilities "Meltdown" and "Spectre" on Intel chips. By exploiting exploits, attackers can steal data from the running memory of the app, such as password managers, browsers, e-mails, photos, and documents. In the data, some media pointed out that every system after 1995 will be affected by loopholes, including computers and mobile phones. This is a very serious problem.

Who is the vulnerability and how do they do it?

Intel CEO Brian Krzanich said that Google is the first company to issue a vulnerability warning to Intel. Google will then issue a complete report. At present, the affected companies have already taken action.

In a statement, Microsoft stated: “We understand this issue that affects the entire industry, and we work closely with chip vendors to develop and test methods to protect our users. We are deploying solutions to cloud services. A security update was released. This vulnerability will affect the hardware of companies such as Intel, ARM and AMD. We have not received any news about exploiting this vulnerability to attack users."

In addition, Amazon announced that the Elastic Compute Cloud system (EC2) in its cloud service has patched the relevant vulnerabilities, and the remaining parts will be repaired within a few hours, reminding users that they need to patch the operating system.

There are also industry figures that the Apple system will not be affected. They had already solved this problem to some extent as early as last December's macOS 10.13.2.

How big is the vulnerability?

Insiders pointed out that Microsoft Windows, Apple's macOS, and Linux operating systems have all been affected by Intel's loopholes. In addition to personal computers, cloud computing services including Amazon, Microsoft, and Google are also affected by vulnerabilities.

A Linux kernel developer named Dave Hansen said on the Internet that the patching in the Linux kernel will affect all operating systems. Most of the software running will have a "single-digit decline". The typical performance degradation is 5%.

However, more people think that performance will decline even more, and security personnel said that the vulnerability can be fixed, but the biggest problem is that the patch may lead to PC and Mac performance degradation, a decline of 5% -30% between At present, it is not yet clear what the degree of decline is.

At the same time, foreign media pointed out that although the patching of loopholes leads to a decrease in the performance of Intel processors, it is recommended that users install patches from various operating system vendors as soon as possible.

NetEase Intelligence interviewed Ronald who also worked with Windows computers and Apple computers. He told us: "We are really worried about the declining performance of computers. At present, we may encounter computer stalls at many times. If performance drops by 30%, my God, I unacceptable."

This is the full statement of Intel

Intel and other technology companies have learned about the new security research results, which describe some software analysis methods. Once maliciously used, these methods make it possible to improperly collect sensitive data from a functioning computing device. Intel believes that these vulnerabilities will not destroy, modify or delete data.

There have been recent reports that these vulnerabilities are caused by "holes" or "defects" that are specific to Intel products. This statement is not correct. From the analysis so far, many types of computing devices (including those using many different vendors' processors and operating systems) are susceptible to these problems.

Intel is committed to improving product and customer security and working closely with many other technology companies, including AMD, ARM, and multiple operating system vendors, to develop an industry-wide approach to solve this quickly and constructively. problem. Intel has already begun offering software and firmware upgrades to mitigate the impact of these vulnerabilities. Contrary to some reports, any performance impact depends on the workload. For ordinary computer users, the perception should not be obvious, and it will be lessened over time.

Intel is committed to revealing potential security issues with the industry's most responsible practices. This is why Intel and other vendors plan to announce more software and firmware updates next week. However, because the current media coverage is not accurate, Intel Corporation chose to issue this statement today.

Please contact your operating system vendor or system manufacturer and use any available updates as soon as possible. Following good safety practices and comprehensive protection against malware can also help prevent possible problems before they are updated.

Intel believes that our products are the safest products in the world, and with the support of our partners, the current solutions for this issue also provide customers with the best security. (Dingxi)

Pay attention to NetEase smart public number (smartman163), obtain the latest report of artificial intelligence industry.

Absolute Linear Encoders

Absolute Linear Encoders,Custom Absolute Encoder,Rotary Encoder Magnetic,Miniature Absolute Encoder

Yuheng Optics Co., Ltd.(Changchun) , https://www.yuhengcoder.com

Posted on