ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Major Intel CPU vulnerability

    IT Discussion
    29
    260
    26.4k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DashrenderD
      Dashrender @momurda
      last edited by

      @momurda said in Major Intel CPU vulnerability:

      Just to expand my rant a bit here. How can their employees be ok with billions of devices all over the world not being patched? This fucking company has made over 2 trillion dollars! during the time that affected cpus were produced. 2 TRILLION dollars, and they wont take a tiny percentage of that money to fix their shit. Enshrinement of money over all else, just an incredibly stupid and short way of thinking, a sickness affecting most people apparently. Im sure next weekend during NFL playoffs theyll have a nice new commercial with more people in cleansuits dancing, but wont fix their broken product.

      It's about what makes the money. Making money is likely the only goal the public company has. So spending some of it on making patches actually doesn't make them money, because customers won't leave them, it hurts them - because if patched, why buy more?

      momurdaM 1 Reply Last reply Reply Quote 0
      • momurdaM
        momurda @Dashrender
        last edited by

        @dashrender They already made money. More than 2 trillion dollars. Even a 20B fix is less than 1% of the money they made selling these cpus

        DashrenderD scottalanmillerS 2 Replies Last reply Reply Quote 0
        • DashrenderD
          Dashrender @momurda
          last edited by Dashrender

          @momurda said in Major Intel CPU vulnerability:

          @dashrender They already made money. More than 2 trillion dollars. Even a 20B fix is less than 1% of the money they made selling these cpus

          You're point? They aren't a charity. It wouldn't matter if it was 0.00001% if it doesn't make financial sense, you don't do it.

          1 Reply Last reply Reply Quote 0
          • scottalanmillerS
            scottalanmiller @momurda
            last edited by

            @momurda said in Major Intel CPU vulnerability:

            @dashrender They already made money. More than 2 trillion dollars. Even a 20B fix is less than 1% of the money they made selling these cpus

            Not of the profits, though, that's just the money passing through them.

            1 Reply Last reply Reply Quote 0
            • momurdaM
              momurda
              last edited by

              Who cares if their margins get affected for a year?
              The company i work for designs and makes electronics. Our revenues are less than 20million/year. Intel makes more than 3000 dollars for every dollar we make. Yet we still have devices over 10 years old in the field that we still provide hardware support and software updates for. No excuse for this.

              scottalanmillerS 1 Reply Last reply Reply Quote 1
              • scottalanmillerS
                scottalanmiller @momurda
                last edited by

                @momurda said in Major Intel CPU vulnerability:

                Who cares if their margins get affected for a year?
                The company i work for designs and makes electronics. Our revenues are less than 20million/year. Intel makes more than 3000 dollars for every dollar we make. Yet we still have devices over 10 years old in the field that we still provide hardware support and software updates for. No excuse for this.

                Also no reason to expect it. Sure, they COULD fix these old things. But just because they can, doesn't mean anything. Profits, size of the field, what other people do... none of these things are factors. All you are doing is showing that Intel could do something, but that's not relevant to if they should or need to or whatever. Sure we need to know that it is possible before knowing if they should, but that's not enough alone to even suggest that that is the case.

                momurdaM 1 Reply Last reply Reply Quote 1
                • momurdaM
                  momurda @scottalanmiller
                  last edited by

                  @scottalanmiller I wasnt trying to compare what intel could do to what the company i work for does. It is just an example of another electronics manufacturer. One with far less resources.
                  One that knows its customers are the only reason it exists. A rather basic economic concept Intel doesnt seem to grasp.
                  Intel have issued patches for the cpus theyre going to patch within 10 days of this knowledge being released. Are you suggesting that another couple weeks of R&D and a patch for cpus going back to Westmere would be too much of a burden for Intel? That is a ludicrous idea.

                  scottalanmillerS 1 Reply Last reply Reply Quote 0
                  • scottalanmillerS
                    scottalanmiller @momurda
                    last edited by

                    @momurda said in Major Intel CPU vulnerability:

                    @scottalanmiller I wasnt trying to compare what intel could do to what the company i work for does. It is just an example of another electronics manufacturer. One with far less resources.
                    One that knows its customers are the only reason it exists. A rather basic economic concept Intel doesnt seem to grasp.
                    Intel have issued patches for the cpus theyre going to patch within 10 days of this knowledge being released. Are you suggesting that another couple weeks of R&D and a patch for cpus going back to Westmere would be too much of a burden for Intel? That is a ludicrous idea.

                    Intel is primarily a consumer products company, though. And that makes things very, very different. Intel also has a strong incentive not to patch old procs - because it is confident that by not doing so they will sell more new ones. And if that happens, which I assure you it will, then their customers have spoken and not only do they not care that their old procs are not patched, they are willing to pay to make sure that they aren't.

                    Intel has a fiduciary responsibility by law, and if not patching makes them money, they are required to do it. Now they have to truly believe that they will make more money that way, but that's how the system works with public companies in the US.

                    1 Reply Last reply Reply Quote 1
                    • mlnewsM
                      mlnews
                      last edited by

                      https://arstechnica.com/gadgets/2018/01/good-newsbad-news-in-quest-to-get-meltdown-and-spectre-patched/

                      1 Reply Last reply Reply Quote 0
                      • momurdaM
                        momurda
                        last edited by

                        Anybody know Supermicro's update stance with this? Have they posted anything?

                        dbeatoD 1 Reply Last reply Reply Quote 0
                        • dbeatoD
                          dbeato @momurda
                          last edited by

                          @momurda said in Major Intel CPU vulnerability:

                          Anybody know Supermicro's update stance with this? Have they posted anything?

                          https://www.supermicro.com/support/security_Intel-SA-00088.cfm

                          https://www.supermicro.com/support/faqs/faq.cfm?faq=27105

                          https://tinkertry.com/meltdown-and-spectre-info#supermicro

                          EddieJenningsE 1 Reply Last reply Reply Quote 2
                          • EddieJenningsE
                            EddieJennings @dbeato
                            last edited by

                            @dbeato said in Major Intel CPU vulnerability:

                            @momurda said in Major Intel CPU vulnerability:

                            Anybody know Supermicro's update stance with this? Have they posted anything?

                            https://www.supermicro.com/support/security_Intel-SA-00088.cfm

                            https://www.supermicro.com/support/faqs/faq.cfm?faq=27105

                            https://tinkertry.com/meltdown-and-spectre-info#supermicro

                            You beat me to it! I just found the Supermicro links and was about to post them here :D.

                            mlnewsM 1 Reply Last reply Reply Quote 1
                            • ObsolesceO
                              Obsolesce
                              last edited by Obsolesce

                              Dell Advising All Customers To Not Install Spectre BIOS Updates

                              Revert back to pre-meltdown/spectre BIOSs, or wait it out if you aren't effected.

                              https://www.bleepingcomputer.com/news/security/dell-advising-all-customers-to-not-install-spectre-bios-updates/

                              Linux Torvalds is pissed:
                              https://www.bleepingcomputer.com/news/linux/linus-torvalds-thinks-the-linux-spectre-patches-are-utter-garbage/

                              DustinB3403D 1 Reply Last reply Reply Quote 2
                              • dafyreD
                                dafyre
                                last edited by

                                I'm researching our environment and right now, it looks like the beginning of armageddon here, lol... But I'm not worried about it too much.

                                Yes, it can be bad, but I haven't seen enough to actually totally terrify me.

                                1 Reply Last reply Reply Quote 0
                                • ObsolesceO
                                  Obsolesce
                                  last edited by

                                  Ours seem fine, so I'm leaving the Dell BIOS 2.7.0 on for now. I'll revert back only if we experience issues, but so far it's been just dandy.

                                  dbeatoD dafyreD 2 Replies Last reply Reply Quote 0
                                  • DustinB3403D
                                    DustinB3403 @Obsolesce
                                    last edited by

                                    @tim_g said in Major Intel CPU vulnerability:

                                    Dell Advising All Customers To Not Install Spectre BIOS Updates

                                    Revert back to pre-meltdown/spectre BIOSs, or wait it out if you aren't effected.

                                    https://www.bleepingcomputer.com/news/security/dell-advising-all-customers-to-not-install-spectre-bios-updates/

                                    Linux Torvalds is pissed:
                                    https://www.bleepingcomputer.com/news/linux/linus-torvalds-thinks-the-linux-spectre-patches-are-utter-garbage/

                                    I'm not sure why he is bitching about it. If he has a better idea, put it down on paper and tell people to test it.

                                    Sometimes things are just messy. Blame Intel for creating crap to start with, not your fellow devs who are simply attempting to resolve a crap situation.

                                    momurdaM 1 Reply Last reply Reply Quote 0
                                    • momurdaM
                                      momurda @DustinB3403
                                      last edited by

                                      @dustinb3403 said in Major Intel CPU vulnerability:

                                      @tim_g said in Major Intel CPU vulnerability:

                                      Dell Advising All Customers To Not Install Spectre BIOS Updates

                                      Revert back to pre-meltdown/spectre BIOSs, or wait it out if you aren't effected.

                                      https://www.bleepingcomputer.com/news/security/dell-advising-all-customers-to-not-install-spectre-bios-updates/

                                      Linux Torvalds is pissed:
                                      https://www.bleepingcomputer.com/news/linux/linus-torvalds-thinks-the-linux-spectre-patches-are-utter-garbage/

                                      I'm not sure why he is bitching about it. If he has a better idea, put it down on paper and tell people to test it.

                                      Sometimes things are just messy. Blame Intel for creating crap to start with, not your fellow devs who are simply attempting to resolve a crap situation.

                                      He is blaming Intel. For giving guidance to the Linux kernel devs to write garbage hotfixes. That is the point of his rant.

                                      DustinB3403D 1 Reply Last reply Reply Quote 0
                                      • DustinB3403D
                                        DustinB3403 @momurda
                                        last edited by

                                        @momurda said in Major Intel CPU vulnerability:

                                        @dustinb3403 said in Major Intel CPU vulnerability:

                                        @tim_g said in Major Intel CPU vulnerability:

                                        Dell Advising All Customers To Not Install Spectre BIOS Updates

                                        Revert back to pre-meltdown/spectre BIOSs, or wait it out if you aren't effected.

                                        https://www.bleepingcomputer.com/news/security/dell-advising-all-customers-to-not-install-spectre-bios-updates/

                                        Linux Torvalds is pissed:
                                        https://www.bleepingcomputer.com/news/linux/linus-torvalds-thinks-the-linux-spectre-patches-are-utter-garbage/

                                        I'm not sure why he is bitching about it. If he has a better idea, put it down on paper and tell people to test it.

                                        Sometimes things are just messy. Blame Intel for creating crap to start with, not your fellow devs who are simply attempting to resolve a crap situation.

                                        He is blaming Intel. For giving guidance to the Linux kernel devs to write garbage hotfixes. That is the point of his rant.

                                        I took it has he is screaming at the Linux kernel devs for writing crap hotfixes, regardless of what intel proposed.

                                        Essentially "a toddler could code better than this!"

                                        momurdaM 1 Reply Last reply Reply Quote 0
                                        • momurdaM
                                          momurda @DustinB3403
                                          last edited by

                                          @dustinb3403 said in Major Intel CPU vulnerability:

                                          @momurda said in Major Intel CPU vulnerability:

                                          @dustinb3403 said in Major Intel CPU vulnerability:

                                          @tim_g said in Major Intel CPU vulnerability:

                                          Dell Advising All Customers To Not Install Spectre BIOS Updates

                                          Revert back to pre-meltdown/spectre BIOSs, or wait it out if you aren't effected.

                                          https://www.bleepingcomputer.com/news/security/dell-advising-all-customers-to-not-install-spectre-bios-updates/

                                          Linux Torvalds is pissed:
                                          https://www.bleepingcomputer.com/news/linux/linus-torvalds-thinks-the-linux-spectre-patches-are-utter-garbage/

                                          I'm not sure why he is bitching about it. If he has a better idea, put it down on paper and tell people to test it.

                                          Sometimes things are just messy. Blame Intel for creating crap to start with, not your fellow devs who are simply attempting to resolve a crap situation.

                                          He is blaming Intel. For giving guidance to the Linux kernel devs to write garbage hotfixes. That is the point of his rant.

                                          I took it has he is screaming at the Linux kernel devs for writing crap hotfixes, regardless of what intel proposed.

                                          Essentially "a toddler could code better than this!"

                                          He is saying that, but about Intel not the kernel developers. The hotfixes are crap because Intel is telling the kernel devs that the only fix is to turn things off, at a high cost(performance) and nobody will want to enable the fixes because of the cost.

                                          DustinB3403D 1 Reply Last reply Reply Quote 0
                                          • dbeatoD
                                            dbeato @Obsolesce
                                            last edited by

                                            @tim_g said in Major Intel CPU vulnerability:

                                            Ours seem fine, so I'm leaving the Dell BIOS 2.7.0 on for now. I'll revert back only if we experience issues, but so far it's been just dandy.

                                            Mine are also working well.

                                            1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 9
                                            • 10
                                            • 11
                                            • 12
                                            • 13
                                            • 13 / 13
                                            • First post
                                              Last post