Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 26 Jul 2023 17:46:36 -0400
From:      Shawn Webb <shawn.webb@hardenedbsd.org>
To:        0x1eef <0x1eef@protonmail.com>
Cc:        "freebsd-security@freebsd.org" <freebsd-security@freebsd.org>
Subject:   Re: Zenbleed
Message-ID:  <20230726214636.yblem2s4sgapb6cw@mutt-hbsd>
In-Reply-To: <G8KdlREJ53JvhucNV2MkjySsZ4qqs6ZdHFXJaFqDIvXj5usSBEr3pOe29JoQVHgjtctmrIOR7O1PHwchvf_cGLr53jbwNGPy_F7_9OstBCE=@protonmail.com>
References:  <G8KdlREJ53JvhucNV2MkjySsZ4qqs6ZdHFXJaFqDIvXj5usSBEr3pOe29JoQVHgjtctmrIOR7O1PHwchvf_cGLr53jbwNGPy_F7_9OstBCE=@protonmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help

--pz3mje32tk7f4blc
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Wed, Jul 26, 2023 at 08:34:56PM +0000, 0x1eef wrote:
> Hello,
>=20
> I was curious if there are plans to apply the "chicken bit"=20
> workaround for the Ryzen line of processors. A firmware
> update is not scheduled to be released until Nov or Dec=20
> at the earliest. Thanks.

For those that would like to test if their systems are affected, this
proof-of-concept was reported to work on at least one system:

https://git.hardenedbsd.org/shawn.webb/zenbleed/-/tree/shawn.webb/bsd/main

Building it depends on gmake and nasm. You'll want to be on the
shawn.webb/bsd/main branch.

Note that this code is simply Tavis' original PoC, just modified
enough to get it to build on FreeBSD and OpenBSD.

Thanks,

--=20
Shawn Webb
Cofounder / Security Engineer
HardenedBSD

https://git.hardenedbsd.org/hardenedbsd/pubkeys/-/raw/master/Shawn_Webb/03A=
4CBEBB82EA5A67D9F3853FF2E67A277F8E1FA.pub.asc

--pz3mje32tk7f4blc
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=K3Tb
-----END PGP SIGNATURE-----

--pz3mje32tk7f4blc--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20230726214636.yblem2s4sgapb6cw>