Author Topic: new Spectre-like attack: VMScape  (Read 633 times)

0 Members and 1 Guest are viewing this topic.

Offline madiresTopic starter

  • Super Contributor
  • ***
  • Posts: 8989
  • Country: de
  • A qualified hobbyist ;)
new Spectre-like attack: VMScape
« on: September 11, 2025, 07:47:02 pm »
Media:
- New VMScape attack breaks guest-host isolation on AMD, Intel CPUs - https://www.bleepingcomputer.com/news/security/new-vmscape-attack-breaks-guest-host-isolation-on-amd-intel-cpus/
- Spectre haunts CPUs again: VMSCAPE vulnerability leaks cloud secrets - https://www.theregister.com/2025/09/11/vmscape_spectre_vulnerability/

Researchers:
- VMScape: Exposing and Exploiting Incomplete Branch Predictor Isolation in Cloud Environments - https://comsec.ethz.ch/research/microarch/vmscape-exposing-and-exploiting-incomplete-branch-predictor-isolation-in-cloud-environments/

Affected CPUs:
- AMD Zen 1 to 5
- Intel Coffee Lake
 

Online SiliconWizard

  • Super Contributor
  • ***
  • Posts: 17532
  • Country: fr
Re: new Spectre-like attack: VMScape
« Reply #1 on: September 11, 2025, 08:21:42 pm »
It has been quickly addressed in Linux 6.16.7 - provided that the fix actually works.
 

Offline madiresTopic starter

  • Super Contributor
  • ***
  • Posts: 8989
  • Country: de
  • A qualified hobbyist ;)
Re: new Spectre-like attack: VMScape
« Reply #2 on: September 12, 2025, 09:15:37 am »
And in kernel 6.12.47 (released yesterday).
 


Share me

Digg  Facebook  SlashDot  Delicious  Technorati  Twitter  Google  Yahoo
Smf