Application development

Intel urged customers not to deploy firmware updates

Microsoft on Saturday issued an out-of-band Windows security update that disabled a patch the company released earlier this month to protect personal computers from possible attacks leveraging one of the “Spectre” vulnerabilities.

The weekend release was Microsoft’s response to an announcement seven days ago by Intel, which told customers of all stripes – from computer makers to end users – to stop deploying the firmware updates it had offered after disclosures of the Spectre and Meltdown flaws. According to Intel, the new firmware “may introduce [a] higher-than-expected [number of] reboots and other unpredictable system behavior” on Broadwell and Haswell processors. Those silicon families were introduced in 2015 and 2013, respectively.

“Our own experience is that system instability can in some circumstances cause data loss or corruption,” Microsoft confirmed in the support document accompanying the surprise update. “While Intel tests, updates and deploys new microcode, we are making available an out-of-band update today, KB4078130, that specifically disables only the mitigation against CVE-2017-5715 – ‘Branch target injection vulnerability.’ In our testing this update has been found to prevent the behavior described.”

The update was written for all supported versions of Windows, including Windows 7, 8.1 and 10, as well as the corresponding Server editions.

Along with the turn-it-off update, Microsoft also published instructions for manually disabling the defenses against the pertinent Spectre vulnerability. Those instructions offer IT administrators the keys which, when added to the Windows registry, enable or disable the mitigations.

Intel’s notice and Microsoft’s emergency update were just the latest bits in one of the messiest security events in ages.

Read more

0 0 votes
Article Rating

Receive Job Alerts via Our Social Media Channels:

Telegram Lagmen Net job Alert
X Lagmen Net job Alert
Facebook Lagmen Net job Alert
Instagram Lagmen Net job Alert

Join Our WhatsApp Groups

Lagmen Limited Job Alert 1
Lagmen Limited Job Alert 2

Submit Your Discover News

discovernews@lagmen.net
reachus@lagmen.net Send us an update or tip via WhatsApp: 07060528734

Contact Us Now

Tel: +2348051324267
Tel: +2348094097992 Download Our App

Download App

Get the latest version of our Android app

Download APK
Subscribe
Notify of
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
0
Would love your thoughts, please comment.x
()
x