• Welcome to Mugwump's Fish World.
 

News:

I increased the "User online time threshold" today (11/29/2023) so maybe you won't lose so many posts.   Everything is up-to-date and running smoothly. Shoot me a message if you have any comments - Dennis

Main Menu
Welcome to Mugwump's Fish World. Please login.

March 28, 2024, 04:36:00 PM

Login with username, password and session length

Stats
  • Total Posts: 127,250
  • Total Topics: 18,510
  • Online today: 163
  • Online ever: 787
  • (January 22, 2020, 01:11:59 PM)
Users Online
Users: 2
Guests: 128
Total: 130

Server Status

Started by BallAquatics, November 18, 2019, 06:07:04 PM

Previous topic - Next topic

BallAquatics

Hi there,

Intel released a statement regarding Machine Check Error Avoidance on Page Size Change. We have rolled out mitigation efforts across our entire fleet and are writing to let you know that our platform is secure and your Droplets and data will not be impacted and you do not need to take any action.

While customers updating to the latest kernels from OS providers may see that the status is vulnerable, we want to assure you that your Droplets are safe because we've implemented mitigation at the hypervisor level.

Machine Check Error Avoidance on Page Size Change is a significant security issue. If an attacker were able to create a Droplet colocated with another user's Droplet, they could exploit the vulnerability, giving them the ability to shutdown that Droplet within a few minutes. We acted quickly to roll out our mitigations and ensure our users were not vulnerable to any attacks.

You may have also heard about the TSX Asynchronous Abort (TAA) vulnerability announced by Intel. This vulnerability does not impact our platform.  https://pages.news.digitalocean.com/n/uVX100JIU60V0y03CWaEDh0

The security of our platform and our users' data is our top priority, and we're taking every measure to ensure our customers remain secure, including keeping you informed of updates about vulnerabilities that may impact your account. For more information, you can read Intel's deep dive.  https://pages.news.digitalocean.com/n/n0EW0Wz03aX60DI0Jh10VCU

Thanks,
Team DigitalOcean


   

Mugwump

Quote from: BallAquatics on November 18, 2019, 06:07:04 PM
Hi there,

Intel released a statement regarding Machine Check Error Avoidance on Page Size Change. We have rolled out mitigation efforts across our entire fleet and are writing to let you know that our platform is secure and your Droplets and data will not be impacted and you do not need to take any action.

While customers updating to the latest kernels from OS providers may see that the status is vulnerable, we want to assure you that your Droplets are safe because we've implemented mitigation at the hypervisor level.

Machine Check Error Avoidance on Page Size Change is a significant security issue. If an attacker were able to create a Droplet colocated with another user's Droplet, they could exploit the vulnerability, giving them the ability to shutdown that Droplet within a few minutes. We acted quickly to roll out our mitigations and ensure our users were not vulnerable to any attacks.

You may have also heard about the TSX Asynchronous Abort (TAA) vulnerability announced by Intel. This vulnerability does not impact our platform.  https://pages.news.digitalocean.com/n/uVX100JIU60V0y03CWaEDh0

The security of our platform and our users' data is our top priority, and we're taking every measure to ensure our customers remain secure, including keeping you informed of updates about vulnerabilities that may impact your account. For more information, you can read Intel's deep dive.  https://pages.news.digitalocean.com/n/n0EW0Wz03aX60DI0Jh10VCU

Thanks,
Team DigitalOcean

"Asynchronous'....had to look up why?....and this made sense......I did some early work helping(6 of us) assemble some of the first modems years ago..winging as we went at first...used fiber optics...Belden Cable Labs was next door...fun job...
In telecommunications, asynchronous communication is transmission of data, generally without the use of an external clock signal, where data can be transmitted intermittently rather than in a steady stream. Any timing required to recover data from the communication symbols is encoded within the symbols.
Jon

?Life should not be a journey to the grave with the intention of arriving safely in a pretty and well preserved body, but rather to skid in broadside in a cloud of smoke, thoroughly used up, totally worn out, and loudly proclaiming ?Wow! What a Ride!? ~ Hunter S. Thompson