EVGA

New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protected

Author
rjohnson11
EVGA Forum Moderator
  • Total Posts : 102323
  • Reward points : 0
  • Joined: 2004/10/05 12:44:35
  • Location: Netherlands
  • Status: offline
  • Ribbons : 84
2019/12/10 23:33:43 (permalink)
https://www.techpowerup.com/262024/new-plundervolt-intel-cpu-vulnerability-exploits-vcore-to-fault-sgx-and-steal-protected-data
 
A group of cybersecurity researchers have discovered a new security vulnerability affecting Intel processors, which they've craftily named "Plundervolt," a portmanteau of the words "plunder" and "undervolt." Chronicled under CVE-2019-11157, it was first reported to Intel in June 2019 under its security bug-bounty programme, so it could secretly develop a mitigation. With the 6-month NDA lapsing, the researchers released their findings to the public. Plundervolt is described by researchers as a way to compromise SGX (software guard extensions) protected memory by undervolting the processor when executing protected computations, to a level where SGX memory-encryption no longer protects data. The researchers have also published proof-of-concept code.

Plundervolt is different from "Rowhammer," in that it flips bits inside the processor, before they're written to the memory, so SGX doesn't protect them. Rowhammer doesn't work with SGX-protected memory. Plundervolt requires root privileges as software that let you tweak vCore require ring-0 access. You don't need direct physical access to the target machine, as tweaking software can also be remotely run. Intel put out security advisory SA-00298 and is working with motherboard vendors and OEMs to release BIOS updates that pack a new microcode with a mititagion against this vulnerability. 
 
Looks like Intel has a lot of security work ahead of them

AMD Ryzen 9 7950X,  Corsair Mp700 Pro M.2, 64GB Corsair Dominator Titanium DDR5  X670E Steel Legend, MSI RTX 4090 Associate Code: H5U80QBH6BH0AXF. I am NOT an employee of EVGA

#1

13 Replies Related Threads

    Cool GTX
    EVGA Forum Moderator
    • Total Posts : 31005
    • Reward points : 0
    • Joined: 2010/12/12 14:22:25
    • Location: Folding for the Greater Good
    • Status: offline
    • Ribbons : 122
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/11 10:35:29 (permalink)
    Intel SA-00298
     
    "Plundervolt requires root privileges as software that let you tweak vCore require ring-0 access"
     
    just another shrimp on the barbie
     

    Learn your way around the EVGA Forums, Rules & limits on new accounts Ultimate Self-Starter Thread For New Members

    I am a Volunteer Moderator - not an EVGA employee

    https://foldingathome.org -->become a citizen scientist and contribute your compute power to help fight global health threats

    RTX Project EVGA X99 FTWK Nibbler EVGA X99 Classified EVGA 3080Ti FTW3 Ultra


    #2
    AuDioFreaK39
    Superclocked Member
    • Total Posts : 183
    • Reward points : 0
    • Joined: 2007/06/04 15:53:59
    • Location: Orange County, CA
    • Status: offline
    • Ribbons : 12
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/13 11:52:59 (permalink)
    Does this vulnerability indicate that software-based overclocking will now become a thing of the past as it poses a security risk?

    It took EVGA a few months in 2018 to release BIOS patches for Spectre/Meltdown (CVE- 2017-5753 / CVE- 2017-5715 / CVE- 2017-5754). The CVEs were published in January 2018 and while the EVGA X299 got patched on January 12th (BIOS 1.06), the Z270 and Z370 didn’t get patched until March 26th (BIOS 1.07/1.08), and the X99 didn’t get patched until April 16th (BIOS 2.06).
    #3
    bill1024
    Omnipotent Enthusiast
    • Total Posts : 11105
    • Reward points : 0
    • Joined: 2008/10/18 01:01:10
    • Status: offline
    • Ribbons : 65
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/13 12:23:56 (permalink)
    So if they need, and have root privilege to do this, is it not a little bit too late anyway?
    Seems like a nonissue to me.

     Life is too short to carry a cheap pocket knife

       
     
    #4
    MadmanRB
    iCX Member
    • Total Posts : 339
    • Reward points : 0
    • Joined: 2018/11/28 16:43:21
    • Location: Here
    • Status: offline
    • Ribbons : 1
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/13 20:02:31 (permalink)
    Its still not good for servers and such.
     
    Put another point for team red down, ouch.
    post edited by MadmanRB - 2019/12/13 20:04:34


    #5
    kougar
    CLASSIFIED Member
    • Total Posts : 3034
    • Reward points : 0
    • Joined: 2006/05/08 10:11:19
    • Status: offline
    • Ribbons : 22
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/14 03:29:28 (permalink)
    I hate this exploit, solely because it validates all those TV show/movie tropes where adding more power miraculously fixes or hacks stuff. Star Trek correctly predicting the future once again!


    Have water, will cool. 
    #6
    vegajf51
    SSC Member
    • Total Posts : 561
    • Reward points : 0
    • Joined: 2018/01/07 12:53:12
    • Status: offline
    • Ribbons : 1
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/14 07:11:41 (permalink)
    kougar
    I hate this exploit, solely because it validates all those TV show/movie tropes where adding more power miraculously fixes or hacks stuff. Star Trek correctly predicting the future once again!


     LOL, so true! 
    #7
    CraptacularOne
    Omnipotent Enthusiast
    • Total Posts : 14533
    • Reward points : 0
    • Joined: 2006/06/12 17:20:44
    • Location: Florida
    • Status: offline
    • Ribbons : 222
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/14 08:18:50 (permalink)
    Sure a lot of these things may not be the best for server farms or such. But for the average person they are irrelevant. If someone already has this level access to your PC you have much bigger problems anyway. 

    Intel i9 14900K ...............................Ryzen 9 7950X3D
    MSI RTX 4090 Gaming Trio................ASRock Phantom RX 7900 XTX
    Samsung Odyssey G9.......................PiMax 5K Super/Meta Quest 3
    ASUS ROG Strix Z690-F Gaming........ASUS TUF Gaming X670E Plus WiFi
    64GB G.Skill Trident Z5 6800Mhz.......64GB Kingston Fury RGB 6000Mhz
    MSI MPG A1000G 1000w..................EVGA G3 SuperNova 1000w
    #8
    vegajf51
    SSC Member
    • Total Posts : 561
    • Reward points : 0
    • Joined: 2018/01/07 12:53:12
    • Status: offline
    • Ribbons : 1
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/14 08:48:07 (permalink)
    CraptacularOne
    Sure a lot of these things may not be the best for server farms or such. But for the average person they are irrelevant. If someone already has this level access to your PC you have much bigger problems anyway. 




    While I 100% agree the issue for us consumers is the patch's they must deploy. The patch's usually carry some sort of performance hit which in turn affects us average consumers.
    #9
    howdyho1
    Superclocked Member
    • Total Posts : 236
    • Reward points : 0
    • Joined: 2009/12/01 11:28:11
    • Location: near the mountains
    • Status: offline
    • Ribbons : 1
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/14 08:56:45 (permalink)
    Regarding Spectre/Meltdown patches. That timeline was a function of when Intel released microcode updates. Older processors were later in the schedule.

    i9-7900X | Asus ROG STRIX X299E | Custom loop | EVGA SuperNOVA 1600 P2 | EVGA 3090 K|NGP|N with Optimus block | 64GB Corsair Vengeance Pro 3200Mhz DDR4 | 2x Samsung 970 EVO 2TB NVME | 2x 4TB WD Black | DG-87 case | 3x LG 27" 4k |  HyperX Alloy Elite 2 kbd | HyperX Pulsefire Haste mse | HyperX Pulsefire RGB mat

     
    Heatware: https://www.heatware.com/u/96922/to
     
    #10
    ty_ger07
    Insert Custom Title Here
    • Total Posts : 21174
    • Reward points : 0
    • Joined: 2008/04/10 23:48:15
    • Location: traveler
    • Status: offline
    • Ribbons : 270
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/14 09:11:06 (permalink)
    Keep in mind that Intel's 10xxx series CPUs are slower than their 9xxx series CPUs due to in-silicon vulnerability mitigation.  This confirms the concern of the trickle-down effect affecting consumers and enthusiasts years later.  As AuDioFreaK39 said, does this indicate that overclocking support on Intel's CPUs could be affected in the future?

    ASRock Z77 • Intel Core i7 3770K • EVGA GTX 1080 • Samsung 850 Pro • Seasonic PRIME 600W Titanium
    My EVGA Score: 1546 • Zero Associates Points • I don't shill

    #11
    z999z3mystorys
    CLASSIFIED Member
    • Total Posts : 4480
    • Reward points : 0
    • Joined: 2008/11/29 06:46:22
    • Location: at my current location
    • Status: offline
    • Ribbons : 23
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/14 12:55:08 (permalink)
    another exploit, just Plunderful... er wonderful.
    #12
    GTXJackBauer
    Omnipotent Enthusiast
    • Total Posts : 10323
    • Reward points : 0
    • Joined: 2010/04/19 22:23:25
    • Location: (EVGA Discount) Associate Code : LMD3DNZM9LGK8GJ
    • Status: offline
    • Ribbons : 48
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/15 01:06:59 (permalink)
    z999z3mystorys
    another exploit, just Plunderful... er wonderful.




    Good one.    

     Use this Associate Code at your checkouts or follow these instructions for Up to 10% OFF on all your EVGA purchases:
    LMD3DNZM9LGK8GJ
    #13
    kougar
    CLASSIFIED Member
    • Total Posts : 3034
    • Reward points : 0
    • Joined: 2006/05/08 10:11:19
    • Status: offline
    • Ribbons : 22
    Re: New "Plundervolt" Intel CPU Vulnerability Exploits vCore to Fault SGX and Steal Protec 2019/12/16 01:38:44 (permalink)
    Considering Intel's fix was to lock voltages, I would tend to guess it would have repercussions on overclocking consumer chips. Even the 9900's support SGX, so by definition they would need the hotfixes too. 


    Have water, will cool. 
    #14
    Jump to:
  • Back to Mobile