Slashdot Mirror


Intel CPU Privilege Escalation Exploit

Eukariote writes "A paper and exploit code detailing a privilege escalation attack on Intel CPUs has just been published. The vulnerability, uncovered by security researchers Joanna Rutkowska (of Blue Pill fame), Rafal Wojtczuk, and, independently, Loic Duflot, makes use of Intel's System Management Mode (SMM). Quote: "The attack allows for privilege escalation from Ring 0 to the SMM on many recent motherboards with Intel CPUs. Rafal implemented a working exploit with code execution in SMM." The implications of this exploit are severe."

1 of 242 comments (clear)

  1. Re:But more importantly... by Anonymous Coward · · Score: -1, Troll

    She's also quite possibly not a woman at all: http://seclists.org/fulldisclosure/2007/Feb/0123.html

    This was the subject of intense debate on her wiki entry; however, all references to it have been removed as they were deemed "potentially libelous."

    I remember the last time she made the news (for Blue Pill, and all the BS that surrounded it), and the evidence as presented was fairly convincing.