[grsec] Hyperthreading and Xeon x86_64's

Gian G. Spicuzza gianspi at gsent.org
Mon Dec 12 14:45:50 EST 2005


1:  And with this knownledge why do you still wish to enable HT?

2:  I have not seen a thread model for grsec, but I havn't browsed the
website throughly either.

~Gian 

-----Original Message-----
From: coderman [mailto:coderman at gmail.com] 
Sent: Monday, December 12, 2005 2:30 PM
To: Gian G. Spicuzza
Cc: grsecurity at grsecurity.net
Subject: Re: [grsec] Hyperthreading and Xeon x86_64's

On 12/10/05, Gian G. Spicuzza <gianspi at gsent.org> wrote:
> Hyperthreading does have a security vulnerability.  I don't know if it 
> affects grsec patched kernels.

there are similar cache based side channel attacks against certain block
ciphers exploitable remotely:
http://cr.yp.to/antiforgery/cachetiming-20050414.pdf

both of these issues are probably outside the threat model grsecurity aims
for.

[is there a formal threat model defined for grsecurity?]




More information about the grsecurity mailing list