Ó¢ÌØ¶û¿áî£ CPUÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2018-06-15Îó²î±àºÅ
CVE-2018-3665
Îó²î¼¶±ð
¸ß
CVSS·ÖÖµ
³§ÉÌ×ÔÆÀ£º4.3 CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
Ó°Ïì¹æÄ£
¸ÃÎó²îÓ°ÏìËùÓÐÓ¢ÌØ¶û¿áî£Î¢´¦Öóͷ£Æ÷£¬£¬£¬£¬£¬£¬Ëü±£´æÓÚÏÖʵ CPU ÖУ¬£¬£¬£¬£¬£¬Òò´ËÎÞÂÛÓû§Ê¹ÓõÄÊÇÄÄÖÖ²Ù×÷ϵͳÈç Windows¡¢Linux¡¢BSDµÈ£¬£¬£¬£¬£¬£¬Ö»ÒªÔËÐлùÓÚÓ¢ÌØ¶û¿áî£µÄ CPU ÇÒʹÓá°Lazy FPU ÉÏÏÂÎÄÇл»¡±¹¦Ð§¼´ÊÜÓ°Ïì¡£¡£¡£
Îó²îÐÎò
2018Äê6ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬Intel ¹Ù·½Åû¶´¦Öóͷ£Æ÷Öи¡µã¼Ä´æÆ÷×´Ì¬ÍÆ³ÙÉúÑĵÄÌØÕ÷±£´æÎó²î£¬£¬£¬£¬£¬£¬Ê¹ÓôËÎó²î£¬£¬£¬£¬£¬£¬Á¬ÏµÍƲâÖ´ÐкͲàÐŵÀ¹¥»÷¿ÉÒÔй¶ÁíÒ»¸öÀú³ÌµÄ¸¡µã¼Ä´æÆ÷״̬£¬£¬£¬£¬£¬£¬¿ÉÄÜÔì³ÉÃô¸ÐÐÅϢй¶¡£¡£¡£
ÏÖ´ú´¦Öóͷ£Æ÷ÔÚÀú³ÌÇл»Ê±¿ÉÒÔÑ¡ÔñÍÆ³ÙÉúÑĺͻָ´Ä³Ð©CPU µÄÉÏÏÂÎÄ״̬À´Ìá¸ßϵͳÐÔÄÜ¡£¡£¡£
ÆäÖÐFPU Ϊ¸¡µãµ¥Î»£¬£¬£¬£¬£¬£¬¿ÉÓÃÓڸ߾«¶È¸¡µãÔËË㣬£¬£¬£¬£¬£¬ÓÉÓÚ²»ÊÇËùÓеÄÓ¦ÓóÌÐò¶¼Ê¹ÓÃFPU£¬£¬£¬£¬£¬£¬ÒÔÊÇʹÓÃÍÆ³ÙÉúÑÄ/»Ö¸´µÄÌØÕ÷£¬£¬£¬£¬£¬£¬ÈôÊÇе÷ÀíµÄÀú³Ì²»Ê¹ÓÃFP Ö¸Á£¬£¬£¬£¬£¬Ôò²»ÐèÒªÇл»FPU ÉÏÏÂÎÄ״̬£¬£¬£¬£¬£¬£¬ÒÔ´ËÀ´ïÔÌÖ´ÐÐÖÜÆÚ£¬£¬£¬£¬£¬£¬Ìá¸ßÐÔÄÜ¡£¡£¡£µ±ÐÂÀú³ÌʹÓÃFP Ö¸Áîʱ£¬£¬£¬£¬£¬£¬»á´¥·¢¡°×°±¸²»¿ÉÓã¨DNA£©¡±Òì³££¬£¬£¬£¬£¬£¬Í¨¹ýÒì³£´¦Öóͷ£ÀÍÆÈ´»FPU ÉÏÏÂÎÄ״̬¡£¡£¡£
ʹÓøÃÌØÕ÷£¬£¬£¬£¬£¬£¬¿ÉÒÔͨ¹ýÍÆ²âÖ´ÐкͲàÐŵÀ¹¥»÷ÔÚ´¥·¢DNA Ò쳣ǰ¶Áȡ֮ǰÀú³ÌµÄ¸¡µã¡£¡£¡£
ͬÑù¾ßÓиÃÌØÕ÷µÄÉÐÓÐSSE£¬£¬£¬£¬£¬£¬AVX£¬£¬£¬£¬£¬£¬MMX£¬£¬£¬£¬£¬£¬²¢ÇÒAESµÄ¼ÓÃÜÃÜԿͨ³£»£»£»£»á´æ·ÅÔÚSSE¼Ä´æÆ÷ÖУ¬£¬£¬£¬£¬£¬Õâ¿ÉÄÜʹ¹¥»÷ÕßÄܹ»ÇÔÈ¡¸ü¶àÓÐÓÃÐÅÏ¢¡£¡£¡£
½â¾ö²½·¥
Õë¶ÔLinux£¬£¬£¬£¬£¬£¬ÏµÍ³¿ª·¢Ö°Ô±¿ÉÒÔͨ¹ýeagerfpu=on ²ÎÊýÀ´Æô¶¯Äںˣ¬£¬£¬£¬£¬£¬Ê¹ÓÃEager FP»Ö¸´Ä£Ê½À´È¡´úLazy FP»Ö¸´Ä£Ê½£¬£¬£¬£¬£¬£¬Eager FP»Ö¸´Ä£Ê½Ï£¬£¬£¬£¬£¬£¬ÎÞÂÛÄ¿½ñÀú³ÌÊÇ·ñʹÓÃFPU£¬£¬£¬£¬£¬£¬¶¼»áÉúÑIJ¢»Ö¸´FPU ÉÏÏÂÎÄ״̬¡£¡£¡£
Õë¶ÔWindows£¬£¬£¬£¬£¬£¬ÏÖÔÚLazy restore ÔÚWindows ÉÏĬÈÏ¿ªÆô£¬£¬£¬£¬£¬£¬ÇÒÎÞ·¨±»½ûÓ㬣¬£¬£¬£¬£¬ÐèҪ΢Èí¹Ù·½Ìṩ×îв¹¶¡ÐÞ¸´¡£¡£¡£
²Î¿¼×ÊÁÏ
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00145.html
https://access.redhat.com/solutions/3485131
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV180016
https://www.bleepingcomputer.com/news/security/new-lazy-fp-state-restore-vulnerability-affects-all-intel-core-cpus/


¾©¹«Íø°²±¸11010802024551ºÅ