speed47 / spectre-meltdown-checker

Reptar, Downfall, Zenbleed, ZombieLoad, RIDL, Fallout, Foreshadow, Spectre, Meltdown vulnerability/mitigation checker for Linux & BSD
3.84k stars 477 forks source link

intel-sa-00950: 2023.4 IPU Out-of-Band (OOB) #477

Closed taggart closed 7 months ago

taggart commented 9 months ago

Release at: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00950.html Original release: 11/14/2023

In the release (currently) they have two lists of cpu id's, "Products with new microcode update", and "The following products have already been mitigated". To me, that makes me wonder if there are other products that have not yet (or will not) get microcode updates? What feature has the bug? How can we come up with an exhaustive list of the CPUs effected.

taggart commented 9 months ago

AKA CVE-2023-23583 It's being called reptar and affects:

"from 10th generation Intel Core or 3rd generation Xeon Scalable to current"

and here's a better Intel page with cpu lists

More info here

speed47 commented 7 months ago

Thanks, implemented in #481