Ó¢ÌØ¶û¿áî£ CPUÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2018-06-15

Îó²î±àºÅ


CVE-2018-3665


Îó²î¼¶±ð


¸ß


CVSS·ÖÖµ


³§ÉÌ×ÔÆÀ£º4.3   CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì¹æÄ£


¸ÃÎó²îÓ°ÏìËùÓÐÓ¢ÌØ¶û¿áî£Î¢´¦Öóͷ£Æ÷£¬£¬ £¬£¬£¬£¬Ëü±£´æÓÚÏÖʵ CPU ÖУ¬£¬ £¬£¬£¬£¬Òò´ËÎÞÂÛÓû§Ê¹ÓõÄÊÇÄÄÖÖ²Ù×÷ϵͳÈç Windows¡¢Linux¡¢BSDµÈ£¬£¬ £¬£¬£¬£¬Ö»ÒªÔËÐлùÓÚÓ¢ÌØ¶û¿áĠCPU ÇÒʹÓá°Lazy FPU ÉÏÏÂÎÄÇл»¡±¹¦Ð§¼´ÊÜÓ°Ïì¡£¡£¡£


Îó²îÐÎò


2018Äê6ÔÂ14ÈÕ£¬£¬ £¬£¬£¬£¬Intel ¹Ù·½Åû¶´¦Öóͷ£Æ÷Öи¡µã¼Ä´æÆ÷×´Ì¬ÍÆ³ÙÉúÑĵÄÌØÕ÷±£´æÎó²î£¬£¬ £¬£¬£¬£¬Ê¹ÓôËÎó²î£¬£¬ £¬£¬£¬£¬Á¬ÏµÍƲâÖ´ÐкͲàÐŵÀ¹¥»÷¿ÉÒÔй¶ÁíÒ»¸öÀú³ÌµÄ¸¡µã¼Ä´æÆ÷״̬£¬£¬ £¬£¬£¬£¬¿ÉÄÜÔì³ÉÃô¸ÐÐÅϢй¶¡£¡£¡£


ÏÖ´ú´¦Öóͷ£Æ÷ÔÚÀú³ÌÇл»Ê±¿ÉÒÔÑ¡ÔñÍÆ³ÙÉúÑĺͻָ´Ä³Ð©CPU µÄÉÏÏÂÎÄ״̬À´Ìá¸ßϵͳÐÔÄÜ¡£¡£¡£


ÆäÖÐFPU Ϊ¸¡µãµ¥Î»£¬£¬ £¬£¬£¬£¬¿ÉÓÃÓڸ߾«¶È¸¡µãÔËË㣬£¬ £¬£¬£¬£¬ÓÉÓÚ²»ÊÇËùÓеÄÓ¦ÓóÌÐò¶¼Ê¹ÓÃFPU£¬£¬ £¬£¬£¬£¬ÒÔÊÇʹÓÃÍÆ³ÙÉúÑÄ/»Ö¸´µÄÌØÕ÷£¬£¬ £¬£¬£¬£¬ÈôÊÇе÷ÀíµÄÀú³Ì²»Ê¹ÓÃFP Ö¸Á£¬ £¬£¬£¬£¬Ôò²»ÐèÒªÇл»FPU ÉÏÏÂÎÄ״̬£¬£¬ £¬£¬£¬£¬ÒÔ´ËÀ´ïÔÌ­Ö´ÐÐÖÜÆÚ£¬£¬ £¬£¬£¬£¬Ìá¸ßÐÔÄÜ¡£¡£¡£µ±ÐÂÀú³ÌʹÓÃFP Ö¸Áîʱ£¬£¬ £¬£¬£¬£¬»á´¥·¢¡°×°±¸²»¿ÉÓã¨DNA£©¡±Òì³££¬£¬ £¬£¬£¬£¬Í¨¹ýÒì³£´¦Öóͷ£ÀÍÆÈ´»FPU ÉÏÏÂÎÄ״̬¡£¡£¡£


ʹÓøÃÌØÕ÷£¬£¬ £¬£¬£¬£¬¿ÉÒÔͨ¹ýÍÆ²âÖ´ÐкͲàÐŵÀ¹¥»÷ÔÚ´¥·¢DNA Ò쳣ǰ¶Áȡ֮ǰÀú³ÌµÄ¸¡µã¡£¡£¡£


ͬÑù¾ßÓиÃÌØÕ÷µÄÉÐÓÐSSE£¬£¬ £¬£¬£¬£¬AVX£¬£¬ £¬£¬£¬£¬MMX£¬£¬ £¬£¬£¬£¬²¢ÇÒAESµÄ¼ÓÃÜÃÜԿͨ³£»£»£»£»á´æ·ÅÔÚSSE¼Ä´æÆ÷ÖУ¬£¬ £¬£¬£¬£¬Õâ¿ÉÄÜʹ¹¥»÷ÕßÄܹ»ÇÔÈ¡¸ü¶àÓÐÓÃÐÅÏ¢¡£¡£¡£


½â¾ö²½·¥


Õë¶ÔLinux£¬£¬ £¬£¬£¬£¬ÏµÍ³¿ª·¢Ö°Ô±¿ÉÒÔͨ¹ýeagerfpu=on ²ÎÊýÀ´Æô¶¯Äںˣ¬£¬ £¬£¬£¬£¬Ê¹ÓÃEager FP»Ö¸´Ä£Ê½À´È¡´úLazy FP»Ö¸´Ä£Ê½£¬£¬ £¬£¬£¬£¬Eager FP»Ö¸´Ä£Ê½Ï£¬£¬ £¬£¬£¬£¬ÎÞÂÛÄ¿½ñÀú³ÌÊÇ·ñʹÓÃFPU£¬£¬ £¬£¬£¬£¬¶¼»áÉúÑIJ¢»Ö¸´FPU ÉÏÏÂÎÄ״̬¡£¡£¡£


Õë¶ÔWindows£¬£¬ £¬£¬£¬£¬ÏÖÔÚLazy restore ÔÚWindows ÉÏĬÈÏ¿ªÆô£¬£¬ £¬£¬£¬£¬ÇÒÎÞ·¨±»½ûÓ㬣¬ £¬£¬£¬£¬ÐèҪ΢Èí¹Ù·½Ìṩ×îв¹¶¡ÐÞ¸´¡£¡£¡£


²Î¿¼×ÊÁÏ


https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00145.html


https://access.redhat.com/solutions/3485131


https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV180016


https://www.bleepingcomputer.com/news/security/new-lazy-fp-state-restore-vulnerability-affects-all-intel-core-cpus/