Intel Downfall, AKA GDS: Gather Data Sampling Vulnerability

Source: Slashdot Intel Downfall, AKA GDS: Gather Data Sampling Vulnerability

Happy Patch Tuesday, Here’s A New Vulnerability

You know the drill, a new vulnerability has been discovered but applying the patch will result in noticeably slower performance.  The vulnerability specifically applies to Intel chips from Skylake through to Tigerlake and Ice Lake with with AVX2 and AVX-512.  Raptor Lake is safe, and Alder Lake had it’s AVX-512 support forcibly removed; AMD’s Zen 4 is not listed either though it has it’s own issues as we saw yesterday.  On the Xeon side, Ice Lake chips are indeed vulnerable however Sapphire Rapids chips are safe from Downfall.

There are two ways to make use of Downfall, the first being the usual malware infection to give access to the machine to exploit the vulnerability.  The second is a little more terrifying, Downfall enables a user to access and steal data from other users who share the same computer and popular CPUs running cloud based systems are vulnerable.  In theory this means a nefarious user on a shared cloud computer might be able to access data from other users on that machine.

The proof of concept works on Windows and Linux, however Intel feels Downfall would be challenging to take advantage of in the wild.  That is likely true, as these types of vulnerabilities are traditionally difficult to leverage.  As the patch will cut the performance of AVX GATHER instructions in half let us hope they are correct!

Downfall is characterized as a vulnerability due to a memory optimization feature that unintentionally reveals internal hardware registers to software. With Downfall, untrusted software can access data stored by other programs that typically should be off-limits: the AVX GATHER instruction can leak the contents of the internal vector register file during speculative execution.

Video News

About The Author

Jeremy Hellstrom

Call it K7M.com, AMDMB.com, or PC Perspective, Jeremy has been hanging out and then working with the gang here for years. Apart from the front page you might find him on the BOINC Forums or possibly the Fraggin' Frogs if he has the time.

Leave a reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Latest Podcasts

Archive & Timeline

Previous 12 months
Explore: All The Years!