Domas: Bypassing memory protection with AMD's memory controllers
Christopher Domas has published a proof of concept with a description showing how to use AMD memory controllers' bank swizzle mode to bypass memory protection and read or write arbitrary data, including CPU microcode definitions and memory belonging to the platform security processor . Among other things, this allows code running at the kernel level to directly manipulate the meaning of processor…
We haven't written up this one. LWN has the full story — the link below goes straight to it.