news.mlab.sh
Back to the feed
vulnerability

New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs

High
Image: The Hacker News
Summary

Researchers at MIT have discovered a new vulnerability, dubbed INTERRUPT INJECTION, that allows an unprivileged Linux program to bypass Spectre v2 defenses on Intel and AMD CPUs. By precisely timing a hardware interrupt, attackers can re-poison a processor's branch predictor, leading to data leakage. While Intel does not consider a mitigation necessary, AMD has released a bulletin and a kernel patch to address the issue. The vulnerability exploits a window of time between branch prediction neutralization and use, and requires careful manipulation of interrupt handling to achieve a successful attack.

Read the full article at The Hacker News

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.