EEVblog® Electronics Community Forum
Products => Computers => Security => Topic started by: bingo600 on August 06, 2025, 02:42:06 pm
-
https://www.techradar.com/pro/security/millions-of-dell-laptops-at-risk-due-to-broadcom-chip-security-flaw-heres-how-you-can-stay-safe (https://www.techradar.com/pro/security/millions-of-dell-laptops-at-risk-due-to-broadcom-chip-security-flaw-heres-how-you-can-stay-safe)
https://www.dell.com/support/kbdoc/en-us/000276106/dsa-2025-053 (https://www.dell.com/support/kbdoc/en-us/000276106/dsa-2025-053)
-
Meh, needs physical access.
-
Probably we will all save time by reporting only the few unknow successes by Broadcom, by default this company only produces rotten shit.
This is my reaction when I hear Broadcom:
(https://bloximages.newyork1.vip.townnews.com/gazette.com/content/tncms/assets/v3/editorial/6/f8/6f878c30-8e5d-11eb-addf-8335bac111e4/605e21b7e3561.image.jpg?resize=1203%2C500)
-
Probably we will all save time by reporting only the few unknow successes by Broadcom, by default this company only produces rotten shit.
One word sums up how utterly terrible Broadcom are: VMware.
-
Not sure if that's a chip flaw, since it can be fixed by a firmware update, and also, the attacker requires physical access to your laptop. Unpleasant yes, but highly unlikely to happen to the casual user.
-
If not for this forum, I would never have checked the issue. Thank God my laptop is not affected
-
Not sure if that's a chip flaw, since it can be fixed by a firmware update, and also, the attacker requires physical access to your laptop. Unpleasant yes, but highly unlikely to happen to the casual user.
It resembles the Broadpwn (https://blog.exodusintel.com/2017/07/26/broadpwn/) vulnerability affecting BCM43xx chips, which allows arbitrary code execution on the target device remotely, without requiring physical access. As far as I recall, the firmware is stored in the chip’s ROM memory, while the OS may upload temporary patches into RAM at each boot. Therefore, if the patch isn’t applied (for example - loaded another OS, with no patch), the device continues to run the unpatched firmware.