Intel´¦Öóͷ£Æ÷Îó²î¡°Meltdown¡±¡°Spectre¡±Ó°ÏìÏÕЩȫÇòÓû§
2018-01-04
¿ËÈÕ£¬ Intel´¦Öóͷ£Æ÷±»±¬³ö±£´æÓ²¼þÉϵÄÎó²î£¬¸ÃÎó²îÔ´ÓÚоƬӲ¼þ²ãÃæµÄÒ»´¦Éè¼ÆBUG¡£Õâ¸öBUG»áÔÊÐí³ÌÐòÇÔȡĿ½ñÔÚÅÌËã»úÉÏ´¦Öóͷ£µÄÊý¾Ý£¬²¢ÇÒÓ°ÏìWindows MacOS Linux¡£ÓÉÓÚÉæ¼°Ó²¼þ£¬¸ÃÎó²îÎÞ·¨Í¨¹ýоƬµÄ΢Â루microcode£©¸üоÙÐÐÐÞ¸´£¬ÐèҪͨ¹ýÄں˼¶±ðµÄÐÞ¸´À´½â¾ö£¬²¢ÇÒ¾ÝÑо¿Åú×¢£¬ÐÞ¸´¸ÃÎó²î»áÎþÉü5%-30%µÄÐÔÄÜ¡£
Ïà¹ØÁ´½Ó£º
https://meltdownattack.com/
https://hothardware.com/news/intel-cpu-bug-kernel-memory-isolation-linux-windows-macos
Îó²îÓ°Ïì
¾ÝÑо¿Ö°Ô±ÌåÏÖ£¬ÈôÊÇÅÌËã»úʹÓõÄÊÇ1995ÄêÒÔºóÉú²úµÄIntel´¦Öóͷ£Æ÷оƬ£¬ÄÇô¾Í¼«ÓпÉÄÜÊÜÓ°Ïì¡£ÁíÍâÔÆÇéÐÎÒ²ÊÜÓ°Ï죬¹¥»÷Õß¿ÉÒÔÀÄÓøÃÎó²îÔÚδÊÚȨÇéÐÎÏ»á¼ûÏÕЩÈκÎÒ»¸öÐéÄâ»úÉϵÄÄڴ棬¿ÉÒÔ»ñµÃÃÜÂëµÈÃô¸ÐÐÅÏ¢¡£
Îó²î¸ÅÊö
ͨ³£ÇéÐÎÏ£¬ÅÌËã»úÓ¦¸Ã±ÜÃâÒ»¸öÓ¦ÓóÌÐò¶ÁÈ¡ÄÚºËת´ïµÄÐÅÏ¢¡£ ¿ÉÊÇÔÚ¸ÃBUGµÄÇéÐÎÏ£¬ÕâÖÖ¸ôÀë±»ÆÆËðÁË£¬ÒÔÊÇÒ»¸ö³ÌÐò¿ÉÒÔÔÚδ¾ÔÊÐíµÄÇéÐÎÏÂÔÚÄÚºËÖжÁÈ¡ÁíÒ»¸ö³ÌÐòµÄÄÚ´æ¡£ Ñо¿Ö°Ô±Ö¸³ö£º¡°Õâ¸öbug»ù±¾ÉÏÍ»ÆÆÁËÇå¾²½çÏߣ¬¶øÕâ¸ö½çÏßͨ³£ÊÇÓÉÓ²¼þÀ´Ç¿ÖÆÖ´Ðеġ£¡±
ÕâÖÖ¹¥»÷ʹÓÃÁËÓ¢ÌØ¶ûϵͳ´¦Öóͷ£Àú³ÌʱCPUÎÞ·¨È·¶¨Ò»ÌõÖ¸ÁîÊÇ·ñ»áÖ´ÐУ¬Ò²¾ÍÊÇËùνµÄÍÆ²âÐÔÖ´ÐС£ ͨ³£ÇéÐÎÏ£¬Ó¢Ìضû»áÍÆ²âÒ»¸öÀú³ÌµÄЧ¹û£¬ÔÚʹÃüǰÏÈÔËÐУ¬²¢ÔÚÈ·ÈÏÖ¸ÁîʱÔÙ·µ»ØÖ´ÐдúÂë¡£ ÔÚ´ËÀú³ÌÖУ¬Ó¢ÌضûûÓÐÀֳɵؽ«µÍȨÏÞµÄÓ¦ÓóÌÐòÓë»á¼ûÄÚºËÄÚ´æÍÑÀ룬ÕâÒâζ׏¥»÷Õß¿ÉÒÔʹÓöñÒâÓ¦ÓóÌÐòÀ´»ñȡӦ¸Ã±»¸ôÀëµÄ˽ÓÐÊý¾Ý¡£
MeltdownÍ»ÆÆÁËÓû§Ó¦ÓóÌÐòºÍ²Ù×÷ϵͳ֮¼ä×î»ù±¾µÄ¸ôÀë¡£ ÕâÖÖ¹¥»÷ÔÊÐí³ÌÐò»á¼ûÆäËû³ÌÐòºÍ²Ù×÷ϵͳµÄÄڴ棬Ҳ¾ÍÊÇ¿ÉÒÔ¶ÁÈ¡µ½Ãô¸ÐµÄ£¬ÉñÃØµÄÐÅÏ¢¡£
ÈôÊÇÄúµÄÅÌËã»ú×°ÓÐÊÜÓ°ÏìµÄ´¦Öóͷ£Æ÷²¢ÔËÐÐδ´ò²¹¶¡µÄ²Ù×÷ϵͳ£¬ÔòÔÚ²Ù×÷Ãô¸ÐÐÅϢʱ¾Í»áÓÐ×ß©µÄΣÏÕ¡£Ð¡ÎÒ˽¼ÒÓû§ºÍÔÆÉèÊ©¾ù»áÊܵ½Ó°Ïì¡£
²Î¿¼Á´½Ó£ºhttps://meltdownattack.com/
Spectre
SpectreÍ»ÆÆÁ˲î±ðÓ¦ÓóÌÐòÖ®¼äµÄ¸ôÀë¡£ ËüÔÊÐí¹¥»÷ÕßÓÕÆÎÞ´í³ÌÐò£¨error-free£©²¢Ê¹Æäй¶ÉñÃØÐÅÏ¢¡£ ÊÂʵÉÏ£¬×î¼Ñʵ¼ùµÄÇå¾²¼ì²é·´¶ø»áÔöÌí¹¥»÷Ãæ£¬²¢¿ÉÄÜʹӦÓóÌÐò¸üÈÝÒ×Êܵ½SpectreµÄÓ°Ïì¡£Spectre±ÈMeltdown¸üÄѱ»Ê¹Óã¬È»¶øËüÒ²¸üÄÑÒÔ·À»¤¡£¿ÉÊÇ£¬¿ÉÒÔͨ¹ýÈí¼þ²¹¶¡±ÜÃâ»ùÓÚSpecterµÄÌØ¶¨ÒÑÖªÎó²î¡£
²Î¿¼Á´½Ó£ºhttps://spectreattack.com/
½â¾ö¼Æ»®
Ñо¿Ö°Ô±ÒѾÁªÏµÁËIntel MicrosoftÒÔ¼°AppleѯÎÊÏà¹ØÐÅÏ¢¡£
IntelÐû²¼Á˹ٷ½»ØÓ¦ÌåÏÖÒÑ¾×¢ÖØµ½¸ÃÎó²î£¬»áÖð²½½â¾ö¸ÃÎÊÌ⣬²¢ÇÒÌåÏÖÕâ¸öÎó²î²»µ«ÊÇ·ºÆðÔÚIntelµÄоƬÉÏ¡£
΢ÈíÒ²¸ø³öÁ˹ٷ½»ØÓ¦ÌåÏÖ»áÍŽáоƬ³§ÉÌÒ»Æð½â¾ö¸ÃÎÊÌ⣬²¢ÇÒ»áÐû²¼Çå¾²¸üÐÂÀ´×ÊÖúÔÆ·þÎñÓû§¾ÙÐзÀ»¤¡£
AppleÌåÏÖÒ²»á¾¡¿ìÌṩMacOSµÄ²¹¶¡À´ÐÞ¸´¸ÃÎó²î¡£
LinuxÒѾͨ¹ýKAISERÊÖÒÕÀ´½â¾öÁËMeltdownÎó²î£¬²¢ÇÒ¸üÐÂÒѾ׼±¸Íê±Ï¡£SpectreµÄ¸üл¹ÔÚ×¼±¸ÖС£
Óû§Ó¦¸ÃÒ»Á¬¹Ø×¢£¬¾¡¿ì½ÓÄɲ½·¥¾ÙÐзÀ»¤¡£
²Î¿¼Á´½Ó£º
https://newsroom.intel.com/news/intel-responds-to-security-research-findings/
https://www.forbes.com/sites/davealtavilla/2018/01/03/intel-processor-bug-leaves-all-current-chips-vulnerable-and-its-fix-saps-performance/#230c5ec570af
https://www.forbes.com/sites/thomasbrewster/2018/01/03/intel-meltdown-spectre-vulnerabilities-leave-millions-open-to-cyber-attack/#35e09d1d3932
Éù Ã÷
±¾Ç徲ͨ¸æ½öÓÃÀ´ÐÎò¿ÉÄܱ£´æµÄÇå¾²ÎÊÌ⣬AG¹«Ë¾¿Æ¼¼²»Îª´ËÇ徲ͨ¸æÌṩÈκΰü¹Ü»òÔÊÐí¡£ÓÉÓÚÈö²¥¡¢Ê¹ÓôËÇ徲ͨ¸æËùÌṩµÄÐÅÏ¢¶øÔì³ÉµÄÈκÎÖ±½Ó»òÕß¼ä½ÓµÄЧ¹û¼°Ëðʧ£¬¾ùÓÉʹÓÃÕß×Ô¼ºÈÏÕæ£¬AG¹«Ë¾¿Æ¼¼ÒÔ¼°Ç徲ͨ¸æ×÷Õß²»Îª´Ë¼ç¸ºÈκÎÔðÈΡ£AG¹«Ë¾¿Æ¼¼ÓµÓжԴËÇ徲ͨ¸æµÄÐÞ¸ÄÏ¢ÕùÊÍȨ¡£ÈçÓû×ªÔØ»òÈö²¥´ËÇ徲ͨ¸æ£¬±ØÐè°ü¹Ü´ËÇ徲ͨ¸æµÄÍêÕûÐÔ£¬°üÀ¨°æÈ¨ÉùÃ÷µÈËùÓÐÄÚÈÝ¡£Î´¾AG¹«Ë¾¿Æ¼¼ÔÊÐí£¬²»µÃí§ÒâÐ޸ĻòÕßÔö¼õ´ËÇ徲ͨ¸æÄÚÈÝ£¬²»µÃÒÔÈκη½·¨½«ÆäÓÃÓÚÉÌҵĿµÄ¡£
AG¹«Ë¾ÔÆ





