Most Viewed Content:

India’s censorship body gave power to remove pirated Movies from platforms

India’s Ministry of Information and Broadcasting announced that its...

Microsoft working on new features for Win11 / Win12: smart notifications, depth-of-field effects

According to the source Albacore (@thebookisclosed), Microsoft is preparing...

OpenAI Launched Assistants API, Allowing Developers to Customize AI Assistants with One Click

At today's OpenAI's first developer conference, OpenAI launched the...

Almost all AMD Ryzen chips are vulnerable to side-channel SQUIP attacks, Intel and Apple M1 / M2 chips are not affected

Aug. 12 – Security research has uncovered a new CPU vulnerability called “SQUIP”, which stands for Scheduler Queue Usage via Interference Probing. AMD Zen architecture-based Ryzen chips and others are vulnerable to this new security vulnerability.

The vulnerability is related to the multiple scheduler queues in the CPU. Unlike AMD, Intel uses a single scheduler in its architecture, which means it is not affected by SQUIP.

On the AMD side, SKUs with Synchronous Multithreading (SMT) technology are affected, which includes almost all AMD processor SKUs except for a few models (list attached). The issue is tracked under the ID “CVE-2021-46778”.

The following is a summary and mitigation measures provided by AMD.

Overview

Execution unit scheduler contention may lead to an issue in AMD CPUs codenamed “Zen 1”, “Zen 2”, and “Zen 3” using simultaneous multithreading (SMT). side-channel vulnerability found on AMD microarchitecture using simultaneous multithreading (SMT). By measuring the contention level of the scheduler queue, an attacker may be able to compromise sensitive information.

Mitigation

AMD recommends that software developers adopt existing best practices, including constant-time algorithms and, where appropriate, avoid relying on secret control flow, to help mitigate this potential vulnerability.

The following AMD Ryzen SKUs are unaffected by the SQUIP vulnerability, from the first generation Zen 1 through Zen 3.

Ryzen 1000 (Zen 1)

Ryzen 3 1200

Ryzen 3 1300X

Ryzen 2000 (Zen 1+)

Ryzen 3 2300X

Ryzen 3000 (Zen 2)

Ryzen 5 3500

Ryzen 5 3500X

Athlon 3000/4000 (Zen 2)

Athlon Gold 3150G/GE

Athlon Gold 4150G/GE

In addition to the CPUs listed above, all other Ryzen, Athlon, Threadripper, and EPYC processors are affected by SQUIP because they support SMT.

It should also be noted that the initial reports claimed that the Apple M1 CPU was also vulnerable to the SQUIP vulnerability. While the M1 also uses a split scheduler, it should not be affected because Apple does not use SMT. the same may be true for the M2 chip. However, if a future CPU (such as the M3) migrates to SMT with the same scheduler design, it will be vulnerable to attacks.

Latest

Audi SQ6 e-tron debuts at the 2024 Beijing Auto Show

At the 2024 Beijing Auto Show, the Audi SQ6...

2024 Beijing Auto Show: Lynk & Co 07 EM-P starts pre-sale

At the 2024 Beijing Auto Show, Lynk & Co...

2024 Beijing Auto Show: Genesis G80 Magma EV Unveiled

At the 2024 Beijing Auto Show, the Genesis G80...

Formula Leopard Super 9 officially unveiled at the 2024 Beijing Auto Show

The SUPER 9, which was just unveiled at the...

Newsletter

Don't miss

Audi SQ6 e-tron debuts at the 2024 Beijing Auto Show

At the 2024 Beijing Auto Show, the Audi SQ6...

2024 Beijing Auto Show: Lynk & Co 07 EM-P starts pre-sale

At the 2024 Beijing Auto Show, Lynk & Co...

2024 Beijing Auto Show: Genesis G80 Magma EV Unveiled

At the 2024 Beijing Auto Show, the Genesis G80...

Formula Leopard Super 9 officially unveiled at the 2024 Beijing Auto Show

The SUPER 9, which was just unveiled at the...

Voyah Automobile released Amber 5C battery: 800V platform /over 900KM range

Voyah Automobile held a spring technical communication meeting and...
Threza Gabriel
Threza Gabrielhttps://www.techgoing.com
Threza Gabriel is a news writer at TechGoing. TechGoing is a global tech media to brings you the latest technology stories, including smartphones, electric vehicles, smart home devices, gaming, wearable gadgets, and all tech trending.

Audi SQ6 e-tron debuts at the 2024 Beijing Auto Show

At the 2024 Beijing Auto Show, the Audi SQ6 e-tron model made its domestic debut. The car plans to enter the Chinese market as...

Ericsson confirms layoffs in China, affecting “core network” R&D department

Last month Ericsson reported that it was making strategic adjustments to its business in China and that there were large-scale layoffs in R&D positions....

New Volkswagen ID.4 Crozz is launched: Starts at 239,900 RMB

FAW-Volkswagen’s 2024 facelift ID.4 CROZZ was launched. The new car is available in three configuration versions, with a price range of 239,900 to 293,900...