Get a Pentest and security assessment of your IT network.

News

Misinterpretation of Intel docs is the root cause for the CVE-2018-8897 flaw in Hypervisors and OSs

Developers of major operating systems and hypervisors misread documentation from Intel and introduced a the CVE-2018-8897 vulnerability into to their products. The flaw relates the way the operating systems handle MOV/POP to SS instructions. The CERT/CC speculates the root cause of the flaw is the developers misinterpretation of existing documentation provided by chip manufacturers. In the worst scenario, attackers can, potentially, gain access to sensitive memory information or control low-level operating system functions. An attacker needs local access to exploit the vulnerability and the impact depends on the specific vulnerable software.”]

Source: https://securityaffairs.co/wordpress/72323/hacking/cve-2018-8897-misinterpretation-intel-docs.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2