Security Center

The latest security information on MiTAC server products

Security Center

Security Notices

 

Return Address Security Bulletins, April 30, 2024 (2024-04-30)
(AMD-SB-7005)

Summary:

AMD has received an external report titled ‘INCEPTION’, describing a new speculative side channel attack. The attack can result in speculative execution at an attacker-controlled address, potentially leading to information disclosure. This attack is similar to previous branch prediction-based attacks like Spectrev2 and Branch Type Confusion (BTC)/RetBleed. As with similar attacks, speculation is constrained within the current address space and to exploit, an attacker must have knowledge of the address space and control of sufficient registers at the time of RET (return from procedure) speculation. Hence, AMD believes this vulnerability is only potentially exploitable locally, such as via downloaded malware, and recommends customers employ security best practices, including running up-to-date software and malware detection tools.

AMD is not aware of any exploit of ‘Inception’ outside the research environment at this time.

Affected Platforms and BIOS version numbers that contain the fix:

Product BIOS Version with Fix
AMD SP5 Genoa
S8050
  • V2.02 for S8050GM2NE
  • V2.03 for S8050GM4NE-2T
FT65TB8050
  • V2.02 for B8050F65TV8E2H-G / B8050F65TV8E2H-N
  • V2.03 for B8050F65TV8E2H-2T-N
GC68AB8056 V1.17
GC68CB8056 V2.00
TS70AB8056 V1.20
TD76B8058 V1.00
TS70B8056 V1.17
TN85B8261 V1.00
AMD SP6 Siena
S8040
  • V2.00 for S8040GM2NE
  • V2.02 for S8040GM4NE-2T
GC73AB8046 V1.01
AMD AM5 Raphael
S8016 V3.00
GX40B8016 V2.01
HG68B8016 V2.01
AMD Rome/Milan
S8030
  • V2.03 for S8030GM4NE-2T
  • V4.03 for S8030GM2NE
FT65TB8030 V1.03
GC68AB8036 V2.12
TS65AB8036
  • V2.09 for B8036T65AV4E24HR-2305
  • V2.11 for B8036T65AV12E16HR
TS65B8036 V2.12
TN83B8251 V2.04
TS75AB8252 V2.12




 

今すぐ登録 最新ニュースを入手できます。

「OK」をクリックすると、利用規約, プライバシーポリシー、および クッキーポリシーに同意したことになります。