Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [day] [month] [year] [list]
Message-Id: <201311280223.rAS2NbPL019021@linus.mitre.org>
Date: Wed, 27 Nov 2013 21:23:37 -0500 (EST)
From: cve-assign@...re.org
To: oss-security@...ts.openwall.com
Cc: cve-assign@...re.org
Subject: CVE-2013-6885 AMD Publ. 51810 Errata 793 system hang

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

The person who requested CVE-2013-6885 asked that we send the CVE
assignment here because various open-source software will probably be
adding code to prevent this denial of service attack.

http://support.amd.com/TechDocs/51810_16h_00h-0Fh_Rev_Guide.pdf
http://lists.dragonflybsd.org/pipermail/kernel/2011-December/046594.html
http://www.zdnet.com/blog/hardware/amd-owns-up-to-cpu-bug/18924

  793 Specific Combination of Writes to Write Combined Memory
  Types and Locked Instructions May Cause Core Hang

  Under a highly specific and detailed set of internal timing
  conditions, a locked instruction may trigger a timing sequence whereby
  the write to a write combined memory type is not flushed, causing the
  locked instruction to stall indefinitely.

  Potential Effect on System
  Processor core hang.

  Suggested Workaround
  BIOS should set MSRC001_1020[15] = 1b.

  No fix planned

- -- 
CVE assignment team, MITRE CVE Numbering Authority
M/S M300
202 Burlington Road, Bedford, MA 01730 USA
[ PGP key available through http://cve.mitre.org/cve/request_id.html ]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (SunOS)

iQEcBAEBAgAGBQJSlqj0AAoJEKllVAevmvmsDbEH/iqJkLRAEIAvUYExwqhvC61N
/Td6GRxx9O8anj6fqn73slSUGJ5SM+SPaZ/8ZFwG7SMg1MzZEbMmzLAm3RON86Ru
cM58GDw395sxepmCOWIGUx0dWa5s7n8hhvq2YxPv53GACorTtpmUM5g5HkcR//yR
ipmQCmtQ86vwAQg9m+ZywKexy1DG8bsx3YmuMSkl+5jLkKkLaBGU78AiLJKzqDns
Wq5Bt6uVpqo6y+ORxIlDl5OP1TOLsoyIiHM+94hEpdp472gKOoF20laqaIpK9nTU
0/VK2Tp9UqCA7LC+4KbEbKS4SudN8OKAFBcobXIofBpcI13d90Eoii4QqSzjP9s=
=sAu5
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.