News Spectre Next Generation patches incoming, claims report

Discussion in 'Article Discussion' started by bit-tech, 4 May 2018.

  1. bit-tech

    bit-tech Supreme Overlord Lover of bit-tech Administrator

    Joined:
    12 Mar 2001
    Posts:
    3,676
    Likes Received:
    138
    Read more
     
  2. adidan

    adidan Guesswork is still work

    Joined:
    25 Mar 2009
    Posts:
    19,851
    Likes Received:
    5,626
    M'k.

    Think i'll be waiting for new architecture then.

    Wonder that's why they've been swiping AMD staff? (Yes I know they've had their own "issues" but not quite as comparable IMO).
     
  3. edzieba

    edzieba Virtual Realist

    Joined:
    14 Jan 2009
    Posts:
    3,909
    Likes Received:
    591
    That took longer than expected. Remember, 'Spectre' isn't just 'a' new vulnerability, it's a whole new class of side-channel attacks. Expect to see a lot of whack-a-moling over the next few years as implementations are invented.
    Demanding a company "just fix Spectre" makes about as much sense as demanding they "just fix buffer underruns".

    ::EDIT:: Looks like, as before, these potentially affect all architectures that implement Speculative Execution.
     
    Last edited: 4 May 2018
  4. el_raberto

    el_raberto What's a Dremel?

    Joined:
    4 Nov 2016
    Posts:
    12
    Likes Received:
    0
    So, what we're really saying here is that certain (or all chip makers) can't guarantee that the products they sell us today will not be susceptible to some vulnerability tomorrow? If that's the case then It's pretty much been the way of the tech hardware & software world for some time. I'm sure we're all used to this by now, accept the risks, mitigate them as best we can, cross our fingers and just get on with our lives.
     
  5. adidan

    adidan Guesswork is still work

    Joined:
    25 Mar 2009
    Posts:
    19,851
    Likes Received:
    5,626
    Yeah when they get around to telling people about them that is...

    And I can't say i'm as relaxed as you as dropping a big wadge of cash on a chip that gets newly released even when flaws are known, except to the buyer - coffee lake released in oct 17 and Intel had been told of the vulnerabilities mid 2017.

    Anybody know if there's been an update on the 'conincidental' mass share selling before making the inital announcement btw?
     
  6. Gareth Halfacree

    Gareth Halfacree WIIGII! Lover of bit-tech Administrator Super Moderator Moderator

    Joined:
    4 Dec 2007
    Posts:
    17,161
    Likes Received:
    6,782
    Article updated with the following statement from Intel:

    'Protecting our customers’ data and ensuring the security of our products are critical priorities for us. We routinely work closely with customers, partners, other chipmakers and researchers to understand and mitigate any issues that are identified, and part of this process involves reserving blocks of CVE numbers. We believe strongly in the value of coordinated disclosure and will share additional details on any potential issues as we finalize mitigations. As a best practice, we continue to encourage everyone to keep their systems up-to-date.'
     
Tags: Add Tags

Share This Page