Meltdown
Meltdown
("ülessulatus")
olemus
(a) turvaauk spekulatiivtäitmisega mikroprotsessorites,
võimaldab rikkuda piiri kasutajaprogrammi mäluala ja
kaitstud tuumaala vahel
(b) seda turvaauku ärakasutav rünne
=
a CPU flaw that allows reading by the processor out-of-bounds memory locations
ülevaateid
https://meltdownattack.com/
https://www.trustwave.com/Resources/SpiderLabs-Blog/Overview-of-Meltdown-and-Spectre
https://en.wikipedia.org/wiki/Meltdown_(security_vulnerability)
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-5754
https://www.wired.com/story/meltdown-spectre-bug-collision-intel-chip-flaw-discovery/
https://meltdownattack.com/meltdown.pdf
tõrje
https://www.theverge.com/2018/1/4/16848976/how-to-protect-windows-pc-meltdown-security-flaw
https://thehackernews.com/2018/01/meltdown-spectre-patches.html
https://www.cnet.com/how-to/how-to-fix-meltdown-spectre-intel-amd-arm-windows-mac-android-ios/