Amd will release patches for masterkey, ryzenfall, fallout and chimera
Table of contents:
- AMD will release security patches for MasterKey, RyzenFall, Fallout and Chimera. Will not affect performance
- MasterKey
- RyzenFall and Fallout
- Chimera
In an official statement, AMD has released an assessment of the security breaches that were released by CTS Labs a few days ago, who discovered the MasterKey, RyzenFall, Fallout, and Chimera vulnerabilities, which are affecting Ryzen processors running on sockets. AM4 and TR4.
AMD will release security patches for MasterKey, RyzenFall, Fallout and Chimera. Will not affect performance
AMD has drawn conclusions about these security issues and the patches that are coming in the coming weeks, ensuring that no BIOS update will affect the performance or capacity of the affected CPUs.
Below we see the risk associated with each of the vulnerabilities detailed by AMD.
MasterKey
- The attacker can circumvent the security controls on the Ryzen platform. These changes are persistent after a system reboot.
RyzenFall and Fallout
- The attacker can circumvent the platform's security controls, but is not persistent after rebooting the system. The attacker can install hard-to-detect malware on SMM (x86).
Chimera
- Chimera affects the Promontory chip that is present in many AM4 and TR4 motherboards, and all those AMD EPYC, Ryzen Embedded and AMD Ryzen Mobile FP5 server platforms. AMD clarifies that the Promontory chip was not designed by them but by a third-party vendor, with whom they will work together to release a patch as soon as possible.
AMD ensures that the first updates to address these vulnerabilities are to be released in the coming weeks, they have not given a specific date.
AMDCybersecurity FontMicrosoft talks about loss of performance for patches for meltdown and specter
Microsoft claims that the mitigating patches for the Meltdown and Specter vulnerabilities will be especially noticeable on Haswell and earlier systems.
Haswell and broadwell undergo reboots from meltdown and specter patches
Processor-based computers on the Haswell and Broadwell architectures are experiencing restart problems after applying the patch fixes.
Adobe security patches for acrobat reader, photoshop and bridge and coldfusion among others
Today, Adobe security patches have been released with software updates for six of their products correcting vulnerabilities.