7

4 comments

[–] [Deleted] 0 points (+0|-0)

Cohen's post described the vulnerability as remote code execution flaw. However, physical access is a prerequisite

An AMD spokesperson told The Register that an attacker would first have to gain access to the motherboard and then modify SPI-Flash before the issue could be exploited

[–] xyzzy [OP] 1 points (+1|-0)

The problem is that you can't know if AME is still running on the first network interface if you won't plug it on the dedicated one. Even if you disable it.

Also "physical" is relative, remote KVM is standard now.

[–] [Deleted] 0 points (+0|-0)

What is remote KVM?

[–] xyzzy [OP] 1 points (+1|-0)

Remote access to Keyboard, Video and Mouse. Basically remote access to a system even before it has booted.