Foreshadow (L1 Terminal Fault)

3rd variant of L1 Terminal Fault can only be avoided by disabling Hyper-Threading in the BIOS
CVE-2018-3615 (Foreshadow) is by receiving the most press which is
amazing considering it is by far the most boring of the 3, since very
few few people give a rats ass about SGX -- who cares if SGX is broken
when the cpu can't run your OS safely? Some convincing press agencies
were hired I guess, and have performed a masterful job of distracting.

the reply from hardenedbsd dev is also interesting:
We had some idea this class of problem was coming, through hints we
received from others and an extremely cynical perspective that has
developed. We believe Intel cpus do almost no security checks up-front,
but defer checks until instruction retire. As a result we believe
similar issues will be coming in the future.
We asked repeatedly, but Intel provided no advance notice. We did not
even receive replies to our requests for dialogue.

HardenedBSD received no advanced notice, either.

What's funny is that LWN, a Linux news outlet, might have:


If true, a Linux news outlet, which carries no actual security
responsibilities, received advanced notification, while certain
operating systems vendors did not.
But, again, this is just *speculation* at this point. ;)

apple, playstation 3 and 4, nintendo switch
correction: because intel doesn't give a flying fuck about security

this vulnerability was known since FEBRUARY, but not disclosed until yesterday

Also no
It uses BSD _Tools_ on some stuff.

afaik I think they used some of the net code and that was it.

Apple doesn't use any BSD code, they just have some BSD licensed tools installed like bash.

>BSD licensed tools
>like bash
The native operating system of the PlayStation 3 is CellOS, which is believed to be a fork of FreeBSD; TCP/IP stack fingerprinting identifies a PlayStation 3 as running FreeBSD, and the PlayStation 3 is known to contain code from FreeBSD and NetBSD.
Kind of ironic that the BSD tools that OSX uses are actually forked GNU tools eh?