RE: Disclosed backdoor in xz releases - FreeBSD not affected

2024-04-07 Thread Chen, Alvin W
> >> All supported FreeBSD releases include versions of xz that predate the > affected releases. > >> > >> The main, stable/14, and stable/13 branches do include the affected version > (5.6.0), but the backdoor components were excluded from the vendor import. > Additionally, FreeBSD does not use th

RE: Intel CPU CVE Issue: CVE-2022-21166/CVE-2022-21125/CVE-2022-21123

2022-06-19 Thread Chen, Alvin W
> > [EXTERNAL EMAIL] > > In message <90e55cbc-a0f7-7220-3759-e05dee2da...@inbox.lv>, > John Long wrote: > > >1st of all, my comment was because of your post but was not directed at > >you. Sorry if that was unclear. > > > >2nd of all, great that they give advice. Not so great that people have >

RE: Intel CPU CVE Issue: CVE-2022-21166/CVE-2022-21125/CVE-2022-21123

2022-06-16 Thread Chen, Alvin W
to do a better job with the junk > they're selling. > > /jl > > > > On 16-Jun-22 09:57, Chen, Alvin W wrote: > > Intel provides the migration guideline, please refer to : > https://urldefense.com/v3/__https://www.intel.com/content/www/us/en/ > developer/a

RE: Intel CPU CVE Issue: CVE-2022-21166/CVE-2022-21125/CVE-2022-21123

2022-06-16 Thread Chen, Alvin W
re ready. > > > [EXTERNAL EMAIL] > > Does Intel fund OS and application level mitigations of their never-ending > failure to design or implement anything properly? > > It's hard to understand why the victims should pay... > > /jl > > On 16-Jun-22 07:51, Chen, A

Intel CPU CVE Issue: CVE-2022-21166/CVE-2022-21125/CVE-2022-21123

2022-06-16 Thread Chen, Alvin W
Hi community, Are there any fixes available to fix this Intel CPU CVE issues on FreeBSD? Regards, Alvin Chen Dell | Comercial Client Group office +86-10-82862506, fax +86-10-82861554, Dell Lync 8672506 weike_c...@dell.com Internal Use - Confidential