Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S262614AbVEMXCg (ORCPT ); Fri, 13 May 2005 19:02:36 -0400 Received: (majordomo@vger.kernel.org) by vger.kernel.org id S262590AbVEMXCg (ORCPT ); Fri, 13 May 2005 19:02:36 -0400 Received: from viper.oldcity.dca.net ([216.158.38.4]:11948 "HELO viper.oldcity.dca.net") by vger.kernel.org with SMTP id S262615AbVEMXAR (ORCPT ); Fri, 13 May 2005 19:00:17 -0400 Subject: Re: Hyper-Threading Vulnerability From: Lee Revell To: Alan Cox Cc: Matt Mackall , Andy Isaacson , Andi Kleen , "Richard F. Rebel" , Gabor MICSKO , Linux Kernel Mailing List , tytso@mit.edu In-Reply-To: <1116024419.20646.41.camel@localhost.localdomain> References: <1115963481.1723.3.camel@alderaan.trey.hu> <1116009483.4689.803.camel@rebel.corp.whenu.com> <20050513190549.GB47131@muc.de> <20050513212620.GA12522@hexapodia.org> <20050513215905.GY5914@waste.org> <1116024419.20646.41.camel@localhost.localdomain> Content-Type: text/plain Date: Fri, 13 May 2005 19:00:12 -0400 Message-Id: <1116025212.6380.50.camel@mindpipe> Mime-Version: 1.0 X-Mailer: Evolution 2.3.1 Content-Transfer-Encoding: 7bit Sender: linux-kernel-owner@vger.kernel.org X-Mailing-List: linux-kernel@vger.kernel.org Content-Length: 880 Lines: 21 On Fri, 2005-05-13 at 23:47 +0100, Alan Cox wrote: > On Gwe, 2005-05-13 at 22:59, Matt Mackall wrote: > > It might not be much of a problem though. If he's a bit off per guess > > (really impressive), he'll still be many bits off by the time there's > > enough entropy in the primary pool to reseed the secondary pool so he > > can check his guesswork. > > You can also disable the tsc to user space in the intel processors. > Thats something they anticipated as being neccessary in secure > environments long ago. This makes the attack much harder. And break the hundreds of apps that depend on rdtsc? Am I missing something? Lee - To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/