Critical MDS affects almost all Intel CPUs

May 15, 2019 4:53:04 PM / by Alexandra Mitroshkina posted in Articles, KernelCare Blog, Front Page

36 Comments


Contents
1. About the Zombieload/MDS Vulnerability
2. Patch Release Schedule

About the Zombieload/MDS Vulnerability

Vulnerabilities are becoming like celebrities, with freaky names and their own websites.

The latest ones to hit the scene are Zombieload, RIDL and Fallout, also known as Microarchitectural Data Sampling, (MDS for short), discovered by Intel and researched by academic departments at security-focused institutions around the world. These vulnerabilities are in the same vein as Spectre and Meltdown, being design flaws that reveal data. Zombieload is particularly worrying because it affects all Intel Core and Xeon CPUs manufactured since 2011.

Read More

Why you should automate Linux kernel updates

Mar 8, 2019 1:16:46 PM / by Paul Jacobs posted in Articles, KernelCare Blog

0 Comments

Software is complex and constantly changing. Bugs are inevitable. Before the internet age, bugs were just faults to fix. Now, they are opportunities, one of the ways hackers get unauthorized access to systems. The cybersecurity industry thrives on this threat. Their products 'defend' and 'protect' but cannot plug a simple security loophole: the exploitation of vulnerabilities that persist in outdated and unpatched operating systems and applications.

This article reviews the background to this problem, and gives tips to remedy it using unattended update packages for Ubuntu, Red Hat and Fedora, and live patching solutions from KernelCare, Kgraft, Ksplice, and Livepatch.

Read More

Custom Kernel Patching with Rebootless Updates

Apr 20, 2018 12:15:28 AM / by Inna Gordin posted in Articles, KernelCare Blog, Custom Kernels, Free

0 Comments

Do you want to use KernelCare for rebootless kernel updates? But what if you are running an unsupported distribution? What if your kernel is custom, self-compiled, special, or just old? KernelCare provides Custom Kernel Patching so that your company can benefit from live patching service for your kernel. The experts on our security and kernel development team can update your kernels using KernelCare technology to apply patches to the running kernel without the need to reboot servers.

Read More