<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<atom:link href="https://dev1galaxy.org/extern.php?action=feed&amp;tid=1823&amp;type=rss" rel="self" type="application/rss+xml" />
		<title><![CDATA[Dev1 Galaxy Forum / How to fix the meltdown and spectre issue in Devuan]]></title>
		<link>https://dev1galaxy.org/viewtopic.php?id=1823</link>
		<description><![CDATA[The most recent posts in How to fix the meltdown and spectre issue in Devuan.]]></description>
		<lastBuildDate>Tue, 31 Jul 2018 22:06:34 +0000</lastBuildDate>
		<generator>FluxBB</generator>
		<item>
			<title><![CDATA[Re: How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=11057#p11057</link>
			<description><![CDATA[<p>It is already available in ascii-backports.</p>]]></description>
			<author><![CDATA[dummy@example.com (ivanovnegro)]]></author>
			<pubDate>Tue, 31 Jul 2018 22:06:34 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=11057#p11057</guid>
		</item>
		<item>
			<title><![CDATA[Re: How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=10944#p10944</link>
			<description><![CDATA[<p>Hello, just in case someone is interested: Intel has issued new CPU microcode (20180703):</p><p><a href="https://downloadcenter.intel.com/download/27945/Linux-Processor-Microcode-Data-File?product=122139" rel="nofollow">https://downloadcenter.intel.com/downlo … uct=122139</a></p>]]></description>
			<author><![CDATA[dummy@example.com (boycottsystemd)]]></author>
			<pubDate>Fri, 27 Jul 2018 14:47:33 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=10944#p10944</guid>
		</item>
		<item>
			<title><![CDATA[Re: How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=7565#p7565</link>
			<description><![CDATA[<div class="quotebox"><cite>chillfan wrote:</cite><blockquote><div><div class="quotebox"><cite>greenjeans wrote:</cite><blockquote><div><p>Just need to maybe get with a packager and have them package the newest version, the microcode version in the repo is the next-to-latest version, it&#039;s from July 2017 and the newest one is November 2017, so it&#039;s not like the current jessie microcode package is way old or anything.</p><p>I kinda doubt it has any fixes for meltdown in it.</p></div></blockquote></div><p>Also Intel looks to have pulled the latest microcode for 2018, so most people have to wait for this to change.</p></div></blockquote></div><p>Debian does have the November update, in stretch-backports, maybe it&#039;s in Devuan ascii backports or proposed?</p>]]></description>
			<author><![CDATA[dummy@example.com (greenjeans)]]></author>
			<pubDate>Thu, 08 Feb 2018 20:21:23 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=7565#p7565</guid>
		</item>
		<item>
			<title><![CDATA[Re: How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=7538#p7538</link>
			<description><![CDATA[<p>They haven&#039;t just pulled, they said whoever made the mistake of applying it is screwed, in nicer terms.&#160; But some distributions still have the 01/18 microcode available.</p>]]></description>
			<author><![CDATA[dummy@example.com (fungus)]]></author>
			<pubDate>Mon, 05 Feb 2018 21:03:50 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=7538#p7538</guid>
		</item>
		<item>
			<title><![CDATA[Re: How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=7537#p7537</link>
			<description><![CDATA[<div class="quotebox"><cite>chillfan wrote:</cite><blockquote><div><p>Also Intel looks to have pulled the latest microcode for 2018,</p></div></blockquote></div><p>Ahh, well hopefully that means they may be working on some mitigation for this issue, will be watching for any new updates.</p>]]></description>
			<author><![CDATA[dummy@example.com (greenjeans)]]></author>
			<pubDate>Mon, 05 Feb 2018 20:53:01 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=7537#p7537</guid>
		</item>
		<item>
			<title><![CDATA[Re: How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=7512#p7512</link>
			<description><![CDATA[<div class="quotebox"><cite>greenjeans wrote:</cite><blockquote><div><p>Just need to maybe get with a packager and have them package the newest version, the microcode version in the repo is the next-to-latest version, it&#039;s from July 2017 and the newest one is November 2017, so it&#039;s not like the current jessie microcode package is way old or anything.</p><p>I kinda doubt it has any fixes for meltdown in it.</p></div></blockquote></div><p>Also Intel looks to have pulled the latest microcode for 2018, so most people have to wait for this to change.</p>]]></description>
			<author><![CDATA[dummy@example.com (chillfan)]]></author>
			<pubDate>Sun, 04 Feb 2018 04:49:59 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=7512#p7512</guid>
		</item>
		<item>
			<title><![CDATA[Re: How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=7504#p7504</link>
			<description><![CDATA[<p>Just need to maybe get with a packager and have them package the newest version, the microcode version in the repo is the next-to-latest version, it&#039;s from July 2017 and the newest one is November 2017, so it&#039;s not like the current jessie microcode package is way old or anything.</p><p>I kinda doubt it has any fixes for meltdown in it.</p>]]></description>
			<author><![CDATA[dummy@example.com (greenjeans)]]></author>
			<pubDate>Sun, 04 Feb 2018 00:14:18 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=7504#p7504</guid>
		</item>
		<item>
			<title><![CDATA[Re: How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=7491#p7491</link>
			<description><![CDATA[<div class="quotebox"><cite>fungus wrote:</cite><blockquote><div><p>Thank you for the information but your subject is slightly misleading.<br />Spectre has only partially been dealt with and the fix seems very far away.</p></div></blockquote></div><p>True, the title was poorly chosen. Really this should be titled &quot;How to mitigate Meltdown and Spectre&quot; as it&#039;s unclear if they will ever be fixed. This is basically just how to apply the mitigations if/when they are available.</p><p>From what I can tell about Spectre it needs mitigations in userland, and maybe even mitigations during compile time using a patched gcc.</p>]]></description>
			<author><![CDATA[dummy@example.com (chillfan)]]></author>
			<pubDate>Sat, 03 Feb 2018 12:49:56 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=7491#p7491</guid>
		</item>
		<item>
			<title><![CDATA[Re: How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=7290#p7290</link>
			<description><![CDATA[<p>fyi, x86 is still vulnerable to meltdown.</p>]]></description>
			<author><![CDATA[dummy@example.com (siva)]]></author>
			<pubDate>Thu, 25 Jan 2018 19:53:20 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=7290#p7290</guid>
		</item>
		<item>
			<title><![CDATA[Re: How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=7152#p7152</link>
			<description><![CDATA[<p>Thank you for the information but your subject is slightly misleading.<br />Spectre has only partially been dealt with and the fix seems very far away.</p>]]></description>
			<author><![CDATA[dummy@example.com (fungus)]]></author>
			<pubDate>Sun, 14 Jan 2018 16:20:32 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=7152#p7152</guid>
		</item>
		<item>
			<title><![CDATA[How to fix the meltdown and spectre issue in Devuan]]></title>
			<link>https://dev1galaxy.org/viewtopic.php?pid=7149#p7149</link>
			<description><![CDATA[<p>Some information about mitigating the recent issues for Devuan users. I don&#039;t own any AMD hardware, so these instructions are for intel only.</p><h5>Upgrade the kernel</h5><p>It&#039;s worth knowing that Devuan does nothing to change the kernel images, and provides the Debian packaged kernels. So you can check with the Debian security tracker for the current status of the kernel packages.</p><p><a href="https://security-tracker.debian.org/tracker/source-package/linux" rel="nofollow">https://security-tracker.debian.org/tra … kage/linux</a></p><p>Meltdown is fixed in all the Devuan branches, so you can upgrade your kernel right now to protect against meltdown.</p><div class="codebox"><pre><code>apt-get update</code></pre></div><div class="codebox"><pre><code>apt-get dist-upgrade</code></pre></div><p>This should be enough to get the kernel updates if you have the linux-image-&lt;insertyourarch&gt; virtual package installed. Otherwise search for the latest image version.</p><div class="codebox"><pre><code>apt-cache search ^linux-image-</code></pre></div><p>And install it like this for example.</p><div class="codebox"><pre><code>apt-get install linux-image-3.16.0-5-amd64</code></pre></div><h5>Update the microcode using GRUB</h5><p>Intel recently released new microcode. It&#039;s not known for sure if it&#039;s related to meltdown/spectre yet, but if you want to update the microcode anyway here&#039;s how to go about it. You don&#039;t need to do this if your motherboard vendor has released a BIOS update with the microcode.</p><p>Find and download the latest microcode from downloadcenter.intel.com. The latest at time of writing is <a href="https://downloadcenter.intel.com/download/27431/Linux-Processor-Microcode-Data-File" rel="nofollow">here</a>.</p><p>Change to the /lib/firmware directory (as root).</p><div class="codebox"><pre><code>cd /lib/firmware/</code></pre></div><p>And unpack the tarball here.</p><div class="codebox"><pre><code>tar xf /home/youruser/Downloads/microcode*tgz</code></pre></div><p>The Gentoo wiki page <a href="https://wiki.gentoo.org/wiki/Intel_microcode#Configuration" rel="nofollow">here</a> explains how to convert the ucode into an initrd image that grub can use.</p><p>On Devuan install the iucode-tool package.</p><div class="codebox"><pre><code>apt-get install iucode-tool</code></pre></div><p>And generate the image for grub to use (if you use a boot partition make sure it&#039;s mounted).</p><div class="codebox"><pre><code>iucode_tool -S --write-earlyfw=/boot/early_ucode.cpio /lib/firmware/intel-ucode/*</code></pre></div><p>And you will need to make the changes in /etc/grub.d/10_linux as pointed out in the <a href="https://wiki.gentoo.org/wiki/Intel_microcode#GRUB" rel="nofollow">grub section</a>. When you&#039;re happy with the changes update grub like this.</p><div class="codebox"><pre><code>dpkg-reconfigure grub-pc</code></pre></div><p>And you&#039;ll need to reboot for the changes to take effect.</p><div class="codebox"><pre><code>reboot</code></pre></div><p>And see the <a href="https://wiki.gentoo.org/wiki/Intel_microcode#Verification_2" rel="nofollow">verification</a> section from the gentoo wiki as well. </p><p>If you&#039;re an NVIDIA driver user you should update those to 384.111 for the stable release and 390.25 for the latest version (not covered here). You&#039;ll need to use the nvidia.com driver search feature to find those versions.</p>]]></description>
			<author><![CDATA[dummy@example.com (chillfan)]]></author>
			<pubDate>Sat, 13 Jan 2018 23:17:33 +0000</pubDate>
			<guid>https://dev1galaxy.org/viewtopic.php?pid=7149#p7149</guid>
		</item>
	</channel>
</rss>
