CVE-2005-0109
CVE-2005-0109
Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.24/SCOSA-2005.24.txthttp://marc.info/?l=freebsd-hackers&m=110994026421858&w=2http://marc.info/?l=freebsd-security&m=110994370429609&w=2http://marc.info/?l=openbsd-misc&m=110995101417256&w=2http://secunia.com/advisories/15348http://secunia.com/advisories/18165http://securitytracker.com/id?1013967https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9747http://sunsolve.sun.com/search/document.do?assetkey=1-26-101739-1http://www-1.ibm.com/support/docview.wss?uid=isg1SSRVHMCHMC_C081516_754http://www.daemonology.net/hyperthreading-considered-harmful/http://www.daemonology.net/papers/htt.pdf