Skip to main content

New Vulnerability in Intel Processors – Downfall


JMeixner
Forum|alt.badge.img+17
  • On the path to Greatness
  • 2650 comments

All Intel processors from 2015 to 2022 are affected by a vulnerability called “Downfall”. Attackers can grab sensitive information from other users on a computer like password, encryption keys and personal data. Google found this flaw nearly a year ago and reported is to Intel.

The flaw is in the processor’s memory optimization and makes unintended  internal hardware register accessible by software. This can be used on multi-user computer to get information from other users. On single-user computer malicious applications or apps can use this flaw.  Another scenario is to attack cloud-computer that are located on the same physical infrastructure. So, nearly all computer users are affected.

Antivirus software cannot detect this kind of attack. So, patching is the only solution for this situation.

Intel provides fixes for their processor’s firmware, but they have to be distributed by the device manufactures. They will create tailored patches for their devices based on the code provided by Intel. So, this can take some time.

Some information from Intel:

https://www.intel.com/content/www/us/en/developer/topic-technology/software-security-guidance/processors-affected-consolidated-product-cpu-model.html?wapkw=Downfall
https://www.intel.com/content/www/us/en/developer/articles/technical/software-security-guidance/advisory-guidance/gather-data-sampling.html?wapkw=downfall

https://community.intel.com/t5/Blogs/Products-and-Solutions/Security/Chips-Salsa-Episodes-56-and-57-Gather-Data-Sampling-Downfall-and/post/1508842?wapkw=downfall

Some further information:

https://www.wired.com/story/downfall-flaw-intel-chips/

11 comments

coolsport00
Forum|alt.badge.img+20
  • Veeam Legend
  • 4132 comments
  • August 10, 2023

Yes...saw a little about this yesterday. Another horrible CPU vulnerability😕 Thank you for sharing @JMeixner 


MarcoLuvisi
Forum|alt.badge.img+5
  • Influencer
  • 265 comments
  • August 10, 2023

With this vulnerability we are all potentially attackable 🤐

Thanks @JMeixner for share info


vAdmin
Forum|alt.badge.img+2
  • Influencer
  • 168 comments
  • August 10, 2023

Wow, another big vulnerability published :-o THank you for sharing @JMeixner 


Chris.Childerhose
Forum|alt.badge.img+21
  • Veeam Legend, Veeam Vanguard
  • 8439 comments
  • August 10, 2023

Read about this one yesterday in a news feed.  Pretty bad and will be for most IT Administrators to get this patched and not affect ancillary programs like VMware, etc.


victorwu
Forum|alt.badge.img+7
  • Veeam Vanguard
  • 375 comments
  • August 10, 2023

Thank you for your sharing @JMeixner 😉


dloseke
Forum|alt.badge.img+8
  • Veeam Vanguard
  • 1447 comments
  • August 10, 2023

This for posting this….I hate how much we’re beginning to see hardware vulnerabilities via microcode and firmware.  This looks like another bad one so we’ll have to stay on top of firmware updates as usual, but they’re far to easy to miss and remain vulnerable.


MicoolPaul
Forum|alt.badge.img+23
  • 2360 comments
  • August 10, 2023

Just saw a performance impact digest, up to 39% performance reduction in workloads that use the impacted instruction 😩


dloseke
Forum|alt.badge.img+8
  • Veeam Vanguard
  • 1447 comments
  • August 10, 2023

Wish I could say I was surprised.  Last time we went though processor vulnerabilities with Intel, there were performance impacts as well.


HunterLAFR
Forum|alt.badge.img+8
  • Veeam Legend
  • 421 comments
  • August 10, 2023

dang it!
it will never stops!
I do remeber we had a “situation” with a processor, after upgrading, it just died and we had to call customer support to get it replaced, losing one ESXi Server for a couple of days.

thanks for sharing.

cheers.


dips
Forum|alt.badge.img+7
  • Veeam Legend
  • 808 comments
  • August 18, 2023

Thanks for sharing @JMeixner 

Has anyone started seeing any updates from the manufacturers and if you have installed the update, what type of performance impact are you seeing?

I reckon SQL workloads might be impacted the most.


JMeixner
Forum|alt.badge.img+17
  • Author
  • On the path to Greatness
  • 2650 comments
  • August 18, 2023

I haven’t seen any updates from manufactures up to now. Intel has delivered code to them and they are in the process to build tailored fixes.


Comment