Рабинович тоже по нотам почти верно попадал)f_evgeny wrote: ↑06 Jan 2018 20:51Очень грубо, но суть описана верно.Dmitry67 wrote: ↑06 Jan 2018 20:49Это "рабинович напел"zVlad wrote: ↑06 Jan 2018 20:39 В разных источниках описывают по разному и порой одновременно несколько flaws одновременно. Я говорил об вот этот из ссылки на первой страницы темы (therister.co.uk):
It appears, from what AMD software engineer Tom Lendacky was suggesting above, that Intel's CPUs speculatively execute code potentially without performing security checks. It seems it may be possible to craft software in such a way that the processor starts executing an instruction that would normally be blocked – such as reading kernel memory from user mode – and completes that instruction before the privilege level check occurs.
That would allow ring-3-level user code to read ring-0-level kernel data. And that is not good.
В вики все подробно описано, по шагам
Последний шаг, описанный в вики, весьма нетривиален.