Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 9 Aug 2023 15:08:46 +0200
From:      Christian Weisgerber <naddy@mips.inka.de>
To:        freebsd-security@freebsd.org
Subject:   Re: Downfall microcode update
Message-ID:  <ZNOP3jrj2s7Pl7pC@lorvorc.mips.inka.de>
In-Reply-To: <189d93e0238.2805.fa4b1493b064008fe79f0f905b8e5741@Leidinger.net>
References:  <E2A96C20-6F5D-42B0-A16D-BF70CBB6B99B@lassitu.de> <189d93e0238.2805.fa4b1493b064008fe79f0f905b8e5741@Leidinger.net>

next in thread | previous in thread | raw e-mail | index | archive | help
Alexander Leidinger:

> The real microcode is in sysutils/devcpu-data-intel and updated much more
> recently.
> 
> You can load the microcode from loader,

Specifically, I have this in /boot/loader.conf:

cpu_microcode_load="YES"
cpu_microcode_name="/boot/firmware/intel-ucode.bin"

> or from a rc.d service.

Updating the CPU microcode _after_ the kernel has started seems
questionable.

-- 
Christian "naddy" Weisgerber                          naddy@mips.inka.de



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?ZNOP3jrj2s7Pl7pC>