Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Danny
MVP Platinum
MVP Platinum
Jump to solution

Is Check Point affected by Intel Hyper-Threading flaw (CVE-2018-5407) ?

CVE-2018-5407 - Intel processor execution engine sharing on SMT (e.g. Hyper-Threading) flaw

Is Check Point affected? Should we better disable Hyper-Threading (SMT) until a fix is available?

I didn't find any notification yet on Check Point's Alert page.

1 Solution

Accepted Solutions
Danny
MVP Platinum
MVP Platinum
0 Kudos
3 Replies
Kaspars_Zibarts
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

Haha, good luck with that on productions chassis running VSX... fully tweaked to coreXL and SXL Smiley Happy

HeikoAnkenbrand
MVP Platinum
MVP Platinum

Hi Danny,

As I understood it, you must execute malicious code on the same core to access the other SMT channel. So you need access to the firewall. I don't think the attack should be exploitable without another vulnerability in this case.

But let's wait for Check Point's answer.

Regards

Heiko

➜ CCSM Elite, CCME, CCTE ➜ www.checkpoint.tips
0 Kudos
Danny
MVP Platinum
MVP Platinum

Check Point Response to CVE-2018-5407 (PortSmash)

Check Point is affected but sees low relevance.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events