Jump to content

Should I worry?

Go to solution Solved by Levent,

I dont feel like watching that video but from the links they posted, it might be gigabyte intel SMMRAM thing Intel boards had. If you are talking about the board in your signature, that shouldnt impact you.

The board I have they have no updte to patch it.

GIGA AORUSBYTE B550I PRO AX (AM4 AMD/B550/Mini-Itx/Dual M.2/SATA 6Gb/s/USB 3.2 Gen 1/WiFi 6/2.5 GbE LAN/PCIe4.0/Realtek ALC1220-Vb/DisplayPort 1.4/2xHDMI 2.0B/RGB Fusion 2.0/DDR4/Gaming Motherboard) ,AMD Ryzen 7 5800X 8-core, 16-Thread Unlocked 4.7 GHz, TEAMGROUP T-Force Vulcan Z DDR4 32GB (2 x 16GB) 3200MHz (PC4 25600) Ram, EVGA GeForce RTX 3060 Ti XC Gaming, 08G-P5-3663-KL, 8GB GDDR6, Metal Backplate, LHR 

Link to comment
https://linustechtips.com/topic/1622095-should-i-worry/
Share on other sites

Link to post
Share on other sites

6 minutes ago, Edward78 said:

The board I have they have no updte to patch it.

It's of moderate concern.

 

Theoretically, it seems like this can be executed from a userland program if it is given elevated permissions. So if you get a malicious piece of software, and you hit "Yes" on the UAC prompt asking for administrative permissions, this could affect you. 

 

In theory, anything without admin permissions shouldn't be able to modify the code in UEFI. I don't know enough to say that Windows doesn't have some workaround for that limitation, but this shouldn't be possible to do with a drive-by piece of code from just viewing a website in a normal browser.

 

It is a serious issue if your board is compromised, as there's no guarantee that even a BIOS flash will fix this, so yeah, the board basically useless at that point, at least if connected to the Internet, because an attacker can hijack your system. You could use it offline as like a retro gaming box, or HTPC, probably. If you know how to isolate it properly, maybe you can have it serve some purpose, but I wouldn't trust it for anything mission critical, and I would not let it interact with other computers on your network.

Link to comment
https://linustechtips.com/topic/1622095-should-i-worry/#findComment-16794880
Share on other sites

Link to post
Share on other sites

I dont feel like watching that video but from the links they posted, it might be gigabyte intel SMMRAM thing Intel boards had. If you are talking about the board in your signature, that shouldnt impact you.

mY sYsTeM iS Not pErfoRmInG aS gOOd As I sAW oN yOuTuBe. WhA t IS a GoOd FaN CuRVe??!!? wHat aRe tEh GoOd OvERclok SeTTinGS FoR My CaRd??  HoW CaN I foRcE my GpU to uSe 1o0%? BuT WiLL i HaVE Bo0tllEnEcKs? RyZEN dOeS NoT peRfORm BetTer wItH HiGhER sPEED RaM!!dId i WiN teH SiLiCON LotTerrYyOu ShoUlD dEsHrOuD uR GPUmy SYstEm iS UNDerPerforMiNg iN WarzONEcan mY Pc Run WiNdOwS 11 ?woUld BaKInG MY GRaPHics card fIX it? MultimETeR TeSTiNG!! aMd'S GpU DrIvErS aRe as goOD aS NviDia's YOU SHoUlD oVERCloCk yOUR ramS To 5000C18! jellYfIn Client siDE TRanscoDinG

Link to comment
https://linustechtips.com/topic/1622095-should-i-worry/#findComment-16794883
Share on other sites

Link to post
Share on other sites

22 minutes ago, Edward78 said:

The board I have they have no updte to patch it.

If your board vendor hasn’t released a patch yet, I wouldn’t panic. A lot of these low-level exploits are pretty hard to pull off unless someone has direct access to your system. Just keep your OS and other software up to date, and keep an eye if the manufacturer releases a BIOS update later.

Link to comment
https://linustechtips.com/topic/1622095-should-i-worry/#findComment-16794884
Share on other sites

Link to post
Share on other sites

3 minutes ago, YoungBlade said:

So if you get a malicious piece of software, and you hit "Yes" on the UAC prompt asking for administrative permissions, this could affect you. 

I can think of few scenarios where this would not end poorly anyway. I'd classify this as pretty low risk for general users.

Don't ask to ask, just ask... please 🤨

sudo chmod -R 000 /*

Link to comment
https://linustechtips.com/topic/1622095-should-i-worry/#findComment-16794886
Share on other sites

Link to post
Share on other sites

1 minute ago, Sauron said:

I can think of few scenarios where this would not end poorly anyway. I'd classify this as pretty low risk for general users.

It probably would still be fine, but it could end badly. What concerns me is that it's theoretically possible to do this without in-person access to the computer. It's a way bigger threat to users than similarly bad vulnerabilities in the past that required physical access to the hardware.

 

I guess in the grand scheme of things, the risk is still low. In a sense, nothing changes, as you should never be giving admin permissions to untrusted software regardless of whether this specific vulnerability exists.

Link to comment
https://linustechtips.com/topic/1622095-should-i-worry/#findComment-16794890
Share on other sites

Link to post
Share on other sites

2 hours ago, Levent said:

I dont feel like watching that video but from the links they posted, it might be gigabyte intel SMMRAM thing Intel boards had. If you are talking about the board in your signature, that shouldnt impact you.

Thanks.

GIGA AORUSBYTE B550I PRO AX (AM4 AMD/B550/Mini-Itx/Dual M.2/SATA 6Gb/s/USB 3.2 Gen 1/WiFi 6/2.5 GbE LAN/PCIe4.0/Realtek ALC1220-Vb/DisplayPort 1.4/2xHDMI 2.0B/RGB Fusion 2.0/DDR4/Gaming Motherboard) ,AMD Ryzen 7 5800X 8-core, 16-Thread Unlocked 4.7 GHz, TEAMGROUP T-Force Vulcan Z DDR4 32GB (2 x 16GB) 3200MHz (PC4 25600) Ram, EVGA GeForce RTX 3060 Ti XC Gaming, 08G-P5-3663-KL, 8GB GDDR6, Metal Backplate, LHR 

Link to comment
https://linustechtips.com/topic/1622095-should-i-worry/#findComment-16794950
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×