Intel Security Patch Download

Video: Meltdown-Spectre: A reminder to the IT industry that security is a mirage.

  • Microsoft patches Windows to cool off Intel's Meltdown – wait, antivirus? Meltdown is a design flaw in Intel's processors going back at least 2011 that. Installing the security patch can.
  • Downloads; Security Updates. Windows-Intel -3581:: 308.85. Customers must have a current Technical Support agreement in order to be entitled to.

Microsoft Security Bulletin MS17-010 - Critical.; 12 minutes to read Contributors. In this article Security Update for Microsoft Windows SMB Server (4013389) Published: March 14, 2017. Version: 1.0. Executive Summary. This security update resolves vulnerabilities in Microsoft Windows.

Meltdown-Spectre

Microsoft has released an emergency Windows update to disable Intel's troublesome microcode fix for the Spectre Variant 2 attack.

Not only was Intel's fix for the Spectre attack causing reboots and stability issues, but Microsoft also found it resulted in the worse scenario of data loss or corruption in some circumstances.

To justify the out-of-band update, Microsoft highlights a comment in Intel's fourth-quarter forward-looking statements that mentions for the first time that mitigation techniques potentially lead to data loss or corruption.

Until then, Intel had only mentioned its update was causing unexpected reboots and unpredictable system behavior.

'Our own experience is that system instability can in some circumstances cause data loss or corruption,' Microsoft said.

'We understand that Intel is continuing to investigate the potential impact of the current microcode version and encourage customers to review their guidance on an ongoing basis to inform their decisions,' it added.

To prevent the potential for data loss, Microsoft issued an out-of-band update on the weekend that disables Intel's mitigation for CVE-2017-5715, or the Variant 2 Spectre attack described as a 'branch target injection vulnerability'.

Intel's mitigation for this bug is the main reason it advised customers and hardware makers last week to stop deploying its current microcode.

Dell and HP have since pulled their respective BIOS updates carrying Intel's buggy code, and plan to reissue them once Intel has ironed out the problems.

Read now: Cybersecurity in 2018: A roundup of predictions

How Download Intel Security Patch

Microsoft's update that disables Intel's patch is available for Windows 7 SP1, Windows 8.1, and all versions of Windows 10, for client and server. The update can be downloaded from the Microsoft Update Catalog website. The update leaves in place fixes for the other two vulnerabilities that make up Meltdown and Spectre.

Intel Patch Microsoft

Microsoft has also provided an option to manually disable and enable the mitigation for Variant 2 via special registry key settings. Links to the registry setting instructions can be found on Microsoft's support page.

Given that there are no known reports of attacks on Spectre Variant 2, it would seem the greatest risk to systems and data at present is Intel's buggy microcode.

The company is facing scrutiny from US lawmakers over its handling of the embargo, which has been described by some as an utter mess that left important software projects in the dark.

Intel security patch

Jonathan Corbet, a member of the Linux Foundation's Technical Advisory Board, said the disclosure process for Meltdown and Spectre was unusually secretive.

While the bugs affect Arm and AMD too, Intel is the only chipmaker whose hardware is vulnerable to all three attacks. Despite facing a heightened risk of lawsuits, investors in Intel don't appear to have been spooked by the bugs.

Intel CEO Brian Krzanich said at last week's earning update the company will 'restore confidence in data security with customer-first urgency, transparent, and timely communication'.

Intel Security Patch Download

Previous and related coverage

Intel Security Patch Download

Great work on patching your own products, but why were smaller tech companies kept in the dark?

Dell and HP have pulled Intel's firmware patches for the Spectre attack.

AMD PCs can now install Microsoft's Windows update with fixes for Meltdown and Spectre and the bug that caused boot problems.

Intel's firmware fix for Spectre is also causing higher reboots on Kaby Lake and Skylake CPUs.

26% of organizations haven't yet received Windows Meltdown and Spectre patches(Tech Republic)

Security

Roughly a week after the update was released, many machines still lack the fix for the critical CPU vulnerabilities.

Bad news: A Spectre-like flaw will probably happen again (CNET)

Intel Patch Release

Our devices may never truly be secure, says the CEO of the company that designs the heart of most mobile chips.

Related Topics:

ARM Security TV Data Management CXO Data Centers

Engadget is now part of the Oath family. We (Oath) and our partners need your consent to access your device, set cookies, and use your data, including your location, to understand your interests, provide relevant ads and measure their effectiveness. Oath will also provide relevant ads to you on our partners' products. Learn More

How Oath and our partners bring you better ad experiences

To give you a better overall experience, we want to provide relevant ads that are more useful to you. For example, when you search for a film, we use your search information and location to show the most relevant cinemas near you. We also use this information to show you ads for similar films you may like in the future. Like Oath, our partners may also show you ads that they think match your interests.

Custom Security Patch

Learn more about how Oath collects and uses data and how our partners collect and use data.

Intel Security Patch

Select 'OK' to allow Oath and our partners to use your data, or 'Manage options' to review our partners and your choices. Tip: Sign In to save these choices and avoid repeating this across devices. You can always update your preferences in the Privacy Centre.