Menu
Microsoft issues update to disable Spectre Variant 2 patch

Microsoft issues update to disable Spectre Variant 2 patch

Vendor steps in while Intel continues to investigate impact of current microcode version

Credit: Dreamstime

Microsoft issued an update over the weekend to disable mitigation against Spectre Variant 2 found on Intel chips.

Following Intel’s recommendation for customers to stop deploying a set of faulty patches it issued to fix security flaws in its chips, Microsoft released the update on 27 January.

“We understand that Intel is continuing to investigate the potential impact of the current microcode version and encourage customers to review their guidance on an ongoing basis to inform their decisions,” Microsoft wrote in its support page.

The update (KB4078130) disables the mitigation against CVE-2017-5715 – branch target injection vulnerability only. This was the microcode released by Intel in order to address Spectre Variant 2.

Intel found that this microcode could cause more reboots than expected and other “unpredictable system behaviour”, which in result could cause data loss or corruption.

Microsoft’s update is meant to prevent that behaviour.

“If you are running an impacted device, this update can be applied by downloading it from the Microsoft Update Catalog website,” Microsoft wrote.

The update covers Windows 7 (SP1), Windows 8.1, and all versions of Windows 10, for client and server.

“As of January 25, there are no known reports to indicate that this Spectre variant 2 (CVE 2017-5715) has been used to attack customers,” Microsoft wrote. “We recommend Windows customers, when appropriate, reenable the mitigation against CVE-2017-5715 when Intel reports that this unpredictable system behaviour has been resolved for your device.”

Microsoft is also offering the option to manually disable and enable the mitigation against Spectre Variant 2 to advanced users on impacted devices.

On 3 January, Intel announced that a design flaw in its microprocessors left systems vulnerable.

The Spectre flaw affected nearly every modern computing device, including those with chips from Intel, Advanced Micro Devices (AMD) and ARM Holdings.


Follow Us

Join the newsletter!

Or

Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.

Tags Microsoftintelpatchmeltdownsecurity flawspectrechip flaw

Featured

Slideshows

Reseller News Innovation Awards 2018: meet the top performing partners

Reseller News Innovation Awards 2018: meet the top performing partners

Reseller News honoured the industry’s finest on a standout evening for the New Zealand channel, recognising the achievements of established partners, emerging players and innovative start-ups, in front of over 460 technology leaders in Auckland.

Reseller News Innovation Awards 2018: meet the top performing partners
Champagne Reception kicks off Reseller News Innovation Awards 2018

Champagne Reception kicks off Reseller News Innovation Awards 2018

More than 460 channel leaders came together to toast the top performers of the New Zealand industry, during the opening Champagne Reception at the Reseller News Innovation Awards 2018 - in association with Techbuyer.

Champagne Reception kicks off Reseller News Innovation Awards 2018
Chasing innovation: how Kiwi partners can create a new customer agenda

Chasing innovation: how Kiwi partners can create a new customer agenda

This exclusive Reseller News Roundtable - in association with Rhipe and Microsoft - detailed a blueprint for customer success, outlining the new role of the modern-day partner and wider network in New Zealand.

Chasing innovation: how Kiwi partners can create a new customer agenda
Show Comments