[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Fwd: Huge Intel CPU Bug Allegedly Causes Kernel Memory Vulnerability With Up To 30% Performance Hit




Il 05/01/2018 15:43, Davide Prina ha scritto:
prima di tutto devi riavviare il PC per far si che utilizzi la nuova versione di Linux e poi usarlo normalmente e vedere se noti che è più lento.

https://security.googleblog.com/2018/01/more-details-about-mitigations-for-cpu_4.html
https://support.google.com/faqs/answer/7625886

Google pare abbia trovato un modo di mitigare quasi a zero l'impatto della patch da loro sviluppata e già installate sui sistemi di produzione:
"In response to the vulnerabilities that were discovered we developed a novel mitigation called “Retpoline” -- a binary modification technique that protects against “branch target injection” attacks. We shared Retpoline with our industry partners and have deployed it on Google’s systems, where we have observed negligible impact on performance."

Interessante anche la parte relativa ai benchmark:
"In our own testing, we have found that microbenchmarks can show an exaggerated impact. Of course, Google recommends thorough testing in your environment before deployment; we cannot guarantee any particular performance or operational impact."

GdS

Reply to: