Torrent Invites! Buy, Trade, Sell Or Find Free Invites, For EVERY Private Tracker! HDBits.org, BTN, PTP, MTV, Empornium, Orpheus, Bibliotik, RED, IPT, TL, PHD etc!



Results 1 to 2 of 2
Like Tree2Likes
  • 1 Post By sedna
  • 1 Post By kirill

Thread: RedHat reverts patches to mitigate Spectre Variant 2

  1. #1
    sedna
    Guest sedna's Avatar

    RedHat reverts patches to mitigate Spectre Variant 2

    CVE-2017-5715 (variant 2), also known as Spectre, as most people know by now is a serious problem affecting a large number of computers across the world.

    RedHat previously released patches to mitigate this issue, however, in a rather controversial move, has decided to roll back these changes after complaints about systems failing to boot with the new patches, and instead is now recommending that, "subscribers contact their CPU OEM vendor to download the latest microcode/firmware for their processor."

    Many people have taken to saying that Redhat has, “Washed their hands” of the problem, dumping it onto the responsibility of others to handle instead.

    The full statement about the recommendation can be found here; it says

    "Red Hat Security is currently recommending that subscribers contact their CPU OEM vendor to download the latest microcode/firmware for their processor.

    The latest microcode_ctl and linux-firmware packages from Red Hat do not include resolutions to the CVE-2017-5715 (variant 2) exploit. Red Hat is no longer providing microcode to address Spectre, variant 2, due to instabilities introduced that are causing customer systems not to boot.

    The latest microcode_ctl and linux-firmware packages are reverting these unstable microprocessor firmware changes to versions that were known to be stable and well tested, released before the Spectre/Meltdown embargo lift date on Jan 3rd. Customers are advised to contact their silicon vendor to get the latest microcode for their particular processor."

    This means that virtually every person running Redhat, CentOS, or others such as Scientific Linux that are based on Redhat, now are left without a means to mitigate Spectre Variant 2, unless they contact their hardware manufacturers on a case-by-case basis, which could cause a massive shift of people/companies to potentially move their servers to a different OS in the future.

    Granted, many may do as recommended as well, only time will tell, but the move has left a slightly sour taste among many users throughout the community.

    According to the Redhat Linux homepage, they are the “The world’s leading enterprise Linux platform,” so knowing that they have the most significant market share out of the primary enterprise distributions, means that potentially millions of customers are now being left to handle the situation themselves.
    SoulCalibar likes this.

  2. #2
    EyeS Of TiGeRs
    kirill's Avatar
    Reputation Points
    954214
    Reputation Power
    100
    Join Date
    Aug 2017
    Posts
    34,500
    Time Online
    610 d 13 h 31 m
    Avg. Time Online
    6 h N/A
    Mentioned
    4917 Post(s)
    Quoted
    945 Post(s)
    Liked
    14087 times
    Feedbacks
    928 (100%)
    The publication is good but there is one problem.
    Many processors and motherboards are outdated and are no longer supported by the manufacturer.
    sedna likes this.


Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •