Re: [uml-devel] SecurityFocus Article

2006-05-11 Thread Jeff Dike
On Thu, May 11, 2006 at 02:45:08PM -, Ed White wrote: > I would like to know if UML barriers could by bypassed using this > attack, or not. Maybe we will need a patch for the kernel, or for UML, > or what? I don't see an actual attack. The article is assuming some unspecified vulnerability i

[uml-devel] SecurityFocus Article

2006-05-11 Thread Ed White
A researcher of the french NSA discovered a scary vulnerability in modern x86 cpus and chipsets that expose the kernel to direct tampering. The problem is that a feature called System Management Mode could be used to bypass the kernel and execute code at the highest level possible: ring zero. T