From owner-freebsd-security@freebsd.org Tue Mar 5 19:26:40 2019 Return-Path: Delivered-To: freebsd-security@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 0429D150EF99 for ; Tue, 5 Mar 2019 19:26:40 +0000 (UTC) (envelope-from jhellenthal@dataix.net) Received: from mail-io1-xd33.google.com (mail-io1-xd33.google.com [IPv6:2607:f8b0:4864:20::d33]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "GTS CA 1O1" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id B3220847DC for ; Tue, 5 Mar 2019 19:26:38 +0000 (UTC) (envelope-from jhellenthal@dataix.net) Received: by mail-io1-xd33.google.com with SMTP id x9so8021226iog.12 for ; Tue, 05 Mar 2019 11:26:38 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:disposition-notification-to:from :in-reply-to:date:cc:content-transfer-encoding:references:to :message-id; bh=zGp9YeCs7O2v0W0yyDRAq5G1V+rnv8Jtci+4B43kVVI=; b=EWKvmafuuRwOQTkvSRklVFOFvulqKyK0DEILhIgf6REe2my5XNaPCZBaDHfY7OZtDU CVpdh20WDbnzQ/ufTwewPzDiVf+bD2fvkI11f1+g+VvyY5AP6r1g9xLVIN8d5ge0AMll +Me6IX4pJK58xdykH3w4scuAAv895l9gEYy1S4TBP1njXdjET1pISgg/b9uH/nD6+jYu 8i5nXSQU+1gZHOrrx9+GqFvy/PCorajPVrKpOYyx5jy5uNa62FR0HZ2XW3z30f+X1fUN EEgyYK7dMmKzBnKBzk1gw1ao3F/kKB+gJQPSGgADcxlxKo4yC7Jo5ZYTWCm9YuxkH9LC 12Fg== X-Gm-Message-State: APjAAAXXhtiT9FvjtLuGr0teOlgmln/eUQhCnBMTnUBXagC1/9Ue2aGv gpwBOB6aaGjZ2Od61hZCMrvIZ+J4TgE= X-Google-Smtp-Source: APXvYqxAo0efZTlGtlP6NPNf9jbxHLHJdf9SvGN8KCqmWoFrOYCC+fAm+/cmLhtRONBdk99ccvKlgQ== X-Received: by 2002:a5e:9b0b:: with SMTP id j11mr968915iok.65.1551813997991; Tue, 05 Mar 2019 11:26:37 -0800 (PST) Received: from DataIX.net (cpe-65-30-200-132.wi.res.rr.com. [65.30.200.132]) by smtp.gmail.com with ESMTPSA id c5sm4016174ioa.28.2019.03.05.11.26.36 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 05 Mar 2019 11:26:37 -0800 (PST) Subject: Re: Spoiler Alert Content-Type: text/plain; charset=utf-8 From: "J. Hellenthal" In-Reply-To: <927620D5-F0B3-4218-BDFB-B4D869B5C6FC@cschubert.com> Date: Tue, 5 Mar 2019 13:26:35 -0600 Cc: FreeBSD-security@freebsd.org Content-Transfer-Encoding: quoted-printable References: <927620D5-F0B3-4218-BDFB-B4D869B5C6FC@cschubert.com> To: Cy Schubert Message-Id: <20190305192635.EF4C03DFDA5D@DataIX.net> X-Rspamd-Queue-Id: B3220847DC X-Spamd-Bar: ---- X-Spamd-Result: default: False [-4.66 / 15.00]; ARC_NA(0.00)[]; RCVD_VIA_SMTP_AUTH(0.00)[]; R_DKIM_ALLOW(-0.20)[dataix.net:s=net]; NEURAL_HAM_MEDIUM(-1.00)[-1.000,0]; FROM_HAS_DN(0.00)[]; TO_DN_SOME(0.00)[]; R_SPF_ALLOW(-0.20)[+ip6:2607:f8b0:4000::/36]; MISSING_MIME_VERSION(2.00)[]; MIME_GOOD(-0.10)[text/plain]; PREVIOUSLY_DELIVERED(0.00)[freebsd-security@freebsd.org]; NEURAL_HAM_LONG(-1.00)[-1.000,0]; NEURAL_HAM_SHORT(-0.99)[-0.989,0]; RCVD_COUNT_THREE(0.00)[3]; TO_MATCH_ENVRCPT_SOME(0.00)[]; DKIM_TRACE(0.00)[dataix.net:+]; RCPT_COUNT_TWO(0.00)[2]; DMARC_POLICY_ALLOW(-0.50)[dataix.net,reject]; RCVD_IN_DNSWL_NONE(0.00)[3.3.d.0.0.0.0.0.0.0.0.0.0.0.0.0.0.2.0.0.4.6.8.4.0.b.8.f.7.0.6.2.list.dnswl.org : 127.0.5.0]; IP_SCORE(-2.66)[ip: (-8.54), ipnet: 2607:f8b0::/32(-2.68), asn: 15169(-2.02), country: US(-0.07)]; MX_GOOD(-0.01)[alt1.aspmx.l.google.com,aspmx.l.google.com,aspmx2.googlemail.com,alt2.aspmx.l.google.com,aspmx3.googlemail.com]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; ASN(0.00)[asn:15169, ipnet:2607:f8b0::/32, country:US]; MID_RHS_MATCH_FROM(0.00)[] X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 05 Mar 2019 19:26:40 -0000 Ha! the speculations and revelations of a FreeBSD hacker are certainly = not one to be ignored. Chock another one up to Colin!!! > On Mar 5, 2019, at 13:20, Cy Schubert = wrote: >=20 > This came over my phone's news feed. Another example that Colin = Percival was right when he wrote his paper on exploiting cache for fun = and profit many years ago. >=20 > https://arxiv.org/pdf/1903.00446.pdf >=20 >=20 > --=20 > Pardon the typos and autocorrect, small keyboard in use. > Cheers, > Cy Schubert > FreeBSD UNIX: Web: http://www.FreeBSD.org >=20 > The need of the many outweighs the greed of the few. > _______________________________________________ > freebsd-security@freebsd.org mailing list > https://lists.freebsd.org/mailman/listinfo/freebsd-security > To unsubscribe, send any mail to = "freebsd-security-unsubscribe@freebsd.org" =E2=80=94=20 J. Hellenthal The fact that there's a highway to Hell but only a stairway to Heaven = says a lot about anticipated traffic volume.