Intel Chips Have ‘Kernel Memory Leaking’ Design Flaw and Fix Could Lead to Performance Drop
A serious design flaw and security vulnerability has been discovered in Intel’s CPUs that will require an update at the operating system level to fix, reports The Register.
All modern computers with Intel chips from the last 10 years appear to be affected, including those running Windows, Linux, and macOS.
Similar operating systems, such as Apple’s 64-bit macOS, will also need to be updated – the flaw is in the Intel x86 hardware, and it appears a microcode update can’t address it. It has to be fixed in software at the OS level, or go buy a new processor without the design blunder.
Full details on the vulnerability aren’t yet known as the information is currently under embargo until later in the month. The Register has unearthed some data, however, and it seems the bug allows normal user programs to see some of the contents of the protected kernel memory.
This means malicious programs can potentially, in a worst case scenario, read the contents of the kernel memory, which can include information like passwords, login keys, and more. It’s not yet clear how severe the bug is, but The Register speculates that it’s significant given the rapid changes being made to Windows and Linux.
To fix the bug, the kernel’s memory needs to be isolated from user processes using Kernel Page Table Isolation, which could cause a performance hit on some machines. According to The Register, Linux and Windows machines will see a 5 to 30 percent slowdown once the fix is in place.
It’s not yet clear how Macs will be impacted, as there is little information available at this time. Software updates are in the works for Linux and Windows, and though not mentioned, Apple is also likely working on a fix for the issue.
Full details on what’s known about the vulnerability can be found at The Register, and additional information will be available later this month when complete details on the design flaw are shared.
Enjoy our free content ? Try our Legend services.
- Star Level
- Access to Grendz and the right to READ and SHARE our science techie green pins
- The right to WRITE and SHARE your OWN science techie green pins
- WEEKLY mind-blowing e-report with trends and news, never miss what is grendzing.
- Customization Capability on which trends categories you want us to follow closer.
- P2P Advice From our team and members
- Our iOS or Android app for free
- First to know about new trends and news
- Weekly social media promotions (through Grendz social media presence) of your own pins (tech, science, green related) that may include: Your own service, products, PR or/and business related
- Technology Procurement Grendz Researchers can search for specific technologies or innovations that matches your company business and give you contacts and information that will help you to aquire or implement those technologies (Limit to 3 procurement requests per month)
- Team Members Company access to up to 3 members included in the company legend package.
- No ads and no sales pitch
- 24h Support (via e-mail)
- Cancel anytime your renewal