[5532] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Intel Pentium Bug

daemon@ATHENA.MIT.EDU (Bjorn Wesen)
Sat Nov 8 11:16:28 1997

Date: 	Sat, 8 Nov 1997 13:42:43 +0100
Reply-To: Bjorn Wesen <bjorn@SPARTA.LU.SE>
From: Bjorn Wesen <bjorn@SPARTA.LU.SE>
To: BUGTRAQ@NETSPACE.ORG

>I'd imagine the update sequence can be executed once after power-on, after
>that you can't change it again without a power cycle.  Then it's trivial
>for intel to supply a "null update" to all BIOS vendors, and have them
>load that at boot time.  Then the chip would be secure (from update
>attacks) after the BIOS did its thing.  When intel needs to really update


Remember that the BIOS itself is flashable on most modern motherboards. If
the flash download program was reverse engineered for the most popular
boards, you could conveniently download a processor crasher or just trash it
or install a virus. Nasty.

/Bjorn

home help back first fref pref prev next nref lref last post