BSDSec

deadsimple BSD Security Advisories and Announcements

OpenBSD Errata: June 17th, 2018 (intelfpu)

Errata patches for x86 floating-point units have been released for OpenBSD 6.3.

Intel CPUs speculatively access FPU registers even when the FPU is disabled,
so data (including AES keys) from previous contexts could be discovered if
using the lazy-save approach.

Binary updates for the amd64 platform are available via the syspatch utility.
Source code patches can be found on the errata page:

  https://www.openbsd.org/errata63.html

As this affects the kernel, a reboot will be needed after patching.