Author Topic: AMD CPUs: SinkClose  (Read 348 times)

0 Members and 1 Guest are viewing this topic.

Offline madiresTopic starter

  • Super Contributor
  • ***
  • Posts: 8206
  • Country: de
  • A qualified hobbyist ;)
AMD CPUs: SinkClose
« on: August 10, 2024, 12:57:34 pm »
CVE-2023-31315:
- New AMD SinkClose flaw helps install nearly undetectable malware (https://www.bleepingcomputer.com/news/security/new-amd-sinkclose-flaw-helps-install-nearly-undetectable-malware/)
- ‘Sinkclose’ Flaw in Hundreds of Millions of AMD Chips Allows Deep, Virtually Unfixable Infections (https://www.wired.com/story/amd-chip-sinkclose-flaw/)
- AMD's Security Bulletin: Guest Memory Vulnerabilities (https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7014.html, list of affected CPUs)
 

Offline Ranayna

  • Frequent Contributor
  • **
  • Posts: 949
  • Country: de
Re: AMD CPUs: SinkClose
« Reply #1 on: August 12, 2024, 08:52:46 pm »
Yeah, thats an ugly one.

A bit related, i stumbled over this one when i was looking for UEFI Updates for my MSI board:

Another SMM related security flaw with Mainboards by MSI. Affecting both Intel and AMD Boards.
https://jjensn.com/at-home-in-your-firmware/

Fixes are available for that one.
For SinkClose we will likely have to wait a bit for updated UEFI versions.
 
The following users thanked this post: madires


Share me

Digg  Facebook  SlashDot  Delicious  Technorati  Twitter  Google  Yahoo
Smf