You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Successfully built and did preliminary testing with 4.4.144 on hardware, and everything appears to be functioning correctly.
However, to obtain full mitigations against Spectre versions v3a and v4, CPU microcode updates [0] are also required, and are not yet available in Trusty [1].
Note that we currently do not have intel-microcode as a dependency on servers, as the January Spectre/Meltdown variants had kernel-level mitigations. The risk should be quite low, however, as these vulnerabilities require code execution on the hosts.
Description
Spectre v4 fixes have been backported to 4.4.142. We should upgrade SecureDrop kernels to 4.4.142 or above.
User Research Evidence
Users like up to date software.
User Stories
As a SecureDrop admin, I would like to run up-to-date kernels.
The text was updated successfully, but these errors were encountered: