Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here. |
Notices |
Welcome to LinuxQuestions.org, a friendly and active Linux Community.
You are currently viewing LQ as a guest. By joining our community you will have the ability to post topics, receive our newsletter, use the advanced search, subscribe to threads and access many other special features. Registration is quick, simple and absolutely free. Join our community today!
Note that registered members see fewer ads, and ContentLink is completely disabled once you log in.
Are you new to LinuxQuestions.org? Visit the following links:
Site Howto |
Site FAQ |
Sitemap |
Register Now
If you have any problems with the registration process or your account login, please contact us. If you need to reset your password, click here.
Having a problem logging in? Please visit this page to clear all LQ-related cookies.
Get a virtual cloud desktop with the Linux distro that you want in less than five minutes with Shells! With over 10 pre-installed distros to choose from, the worry-free installation life is here! Whether you are a digital nomad or just looking for flexibility, Shells can put your Linux machine on the device that you want to use.
Exclusive for LQ members, get up to 45% off per month. Click here for more info.
|
|
01-03-2018, 10:34 PM
|
#1
|
LQ Newbie
Registered: Jan 2018
Distribution: Fedora
Posts: 19
Rep:
|
Vulnerabilities such as Meltdown and Spectre
Vulnerabilities such as Meltdown and Spectre are not specifically Linux issues, however they could have a dire effect on Linux machines. I was very surprised to hear that these vulnerabilities could possibly exploit chips that are nearly 20 years old.
It appears to me that developers have the issue with Meltdown well in hand, however I am a bit unclear on Spectre.
For my fellow Fedora users, the Fedora Magazine addressed the issue today at: https://fedoramagazine.org/protect-f...stem-meltdown/
|
|
|
01-03-2018, 10:45 PM
|
#2
|
Member
Registered: Dec 2017
Location: _Austro_Bavaria_
Distribution: gentoo / linux mint
Posts: 433
Rep:
|
Should be merged with my topic
https://www.linuxquestions.org/quest...ug-4175620852/
only google named it that way.
When I had read about it there was no name for it yet. It seems a very old issue which google just now named it for the public
I also saw the slackware guys here are also discussing about it already in their slackware area
|
|
|
01-04-2018, 07:41 PM
|
#3
|
LQ Newbie
Registered: Jan 2018
Distribution: Fedora
Posts: 19
Original Poster
Rep:
|
News for Ubuntu
Dustin Kirkland of Canonical has posted updates about Meltdown and Spectre. Included in his post is the following:
"Ubuntu users of the 64-bit x86 architecture (aka, amd64) can expect updated kernels by the original January 9, 2018 coordinated release date, and sooner if possible."
His post is at: http://blog.dustinkirkland.com/2018/...n-spectre.html
|
|
|
01-11-2018, 04:04 AM
|
#4
|
Member
Registered: Jun 2012
Posts: 122
Rep:
|
Last edited by LittleMaster; 01-11-2018 at 04:17 AM.
|
|
|
01-11-2018, 02:37 PM
|
#5
|
Member
Registered: Jan 2006
Location: USA
Posts: 737
Rep:
|
overall, we are applying compensating controls, not fixing the actual issue.
the issue is at the CPU level. the "fixes" are above that.
Intel and the like will need to re-die stuff to make this issue go away.
|
|
|
01-22-2018, 01:34 PM
|
#7
|
Member
Registered: Sep 2011
Distribution: Puppy
Posts: 601
Rep:
|
CAN perhaps happen now that the vulnerabilities that have been around for "twenty years" have ben publicised for bad hackers to use.
Up to now, no one has reported a single case of anyone taking advantage of the flaw, which, quite honestly, was know and ignored by chip designers for speed reasons, since the flaw was rarely to occur in unforced circumstances.
|
|
|
01-22-2018, 09:14 PM
|
#8
|
LQ Newbie
Registered: Jan 2018
Distribution: Fedora
Posts: 19
Original Poster
Rep:
|
Linus Torvalds' Response
This recent email list really points out the failings of Intel. http://lkml.iu.edu/hypermail/linux/k...1.2/04628.html
|
|
1 members found this post helpful.
|
All times are GMT -5. The time now is 03:34 AM.
|
LinuxQuestions.org is looking for people interested in writing
Editorials, Articles, Reviews, and more. If you'd like to contribute
content, let us know.
|
Latest Threads
LQ News
|
|