[coreboot] x86 smm: memory sinkhole attack

Patrick Georgi pgeorgi at google.com
Wed Aug 12 15:44:16 CET 2015


2015-08-12 16:28 GMT+02:00 Francis Rowe <info at gluglug.org.uk>:

> My basic question is: are coreboot systems affected by this
> vulnerability, and if so, what work is being done to patch it?
>
I reviewed our SMM handler, drafted out how to mitigate any potential issue
and started work on a PoC. Then got distracted by something else.

My test system is the getac/p470 (i945, core2duo CPU)

Specifically, in my case, I am interested in the following coreboot
> systems:
> * i945 platforms (Lenovo X60/T60, Macbook2,1)
> * GM45 platforms (Lenovo X200/T400/T500/R400/R500)
>


> * fam10h AMD platforms (ASUS KFSN4-DRE, ASUS KGPE-D16)
>
Totally different architecture, I'm not sure if the APIC decoding behavior
even translates to that.


Patrick
-- 
Google Germany GmbH, ABC-Str. 19, 20354 Hamburg
Registergericht und -nummer: Hamburg, HRB 86891, Sitz der Gesellschaft:
Hamburg
Geschäftsführer: Graham Law, Christine Elizabeth Flores
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.coreboot.org/pipermail/coreboot/attachments/20150812/df681922/attachment.html>


More information about the coreboot mailing list