Windows Client Guidance against speculative execution vulnerabilities
-
@
Cliff S
from what i can see in that pdf of yours Intel has by all means released updated uCodes to the public and to OEMs for some of the most common cpus out there such as the sandy and ivy bridge ones, or the haswell one including its refresh. All of those should have been made available by ms through that KB, but that hasn't happened and i sincerely don't understand why.
I believe Microsoft has only released the ones for the last 3gen CPU(Skylake thru coffee lake), but that is only a patch really, best is when the motherboard OEMs provide an update.
-
-
... best is when the motherboard OEMs provide an update.
Which, as stated by my OEM, is NOT going to happen. So if neither MS or Toshiba can be bothered with older models how do I get the microcode which Intel have taken the trouble to produce for my CPU?
-
Which, as stated by my OEM, is NOT going to happen. So if neither MS or Toshiba can be bothered with older models how do I get the microcode which Intel have taken the trouble to produce for my CPU?
Basically, like with my laptop and my Lenovo all in one, it's not going to happen.
-
In my case, even though inSpectre's latest version from GRC said a microcode update is available for my CPUID: 306C3, I don't see anything yet either from KB4090007 or from HP Support page. Rumor has it that some users in the fast ring, who have already installed RS4, got a firmware update for their processor, but some did not.
I think I will have to wait and see what happens when SCU is finally released.
-
-
Which, as stated by my OEM, is NOT going to happen. So if neither MS or Toshiba can be bothered with older models how do I get the microcode which Intel have taken the trouble to produce for my CPU?
I don't know if it would be feasible in your particular situation, but you could move the computer to Linux. Linux has protection against Spectre Variant 2 built into the Linux kernel (Retpoline). And if you want Linux to update the CPU microcode, you can download the update directly from Intel and install it manually. Intel provides instructions.
Download Linux* Processor Microcode Data File
Last edited by Ground Sloth; 24 Apr 2018 at 21:24.
-
Which, as stated by my OEM, is NOT going to happen. So if neither MS or Toshiba can be bothered with older models how do I get the microcode which Intel have taken the trouble to produce for my CPU?
Have sneaky suspicion that those OEM's not providing updates don't have any old PC's / Laptops to test a bios update on.
-
Have sneaky suspicion that those OEM's not providing updates don't have any old PC's / Laptops to test a bios update on.
Nah - they just are not prepared yo spend any money on it.
-
In my case, even though inSpectre's latest version from GRC said a microcode update is available for my CPUID: 306C3, I don't see anything yet either from KB4090007 or from HP Support page. Rumor has it that some users in the fast ring, who have already installed RS4, got a firmware update for their processor, but some did not.
I think I will have to wait and see what happens when SCU is finally released.
RS5, Skip ahead, gave me new microcode.
-
Nah - they just are not prepared yo spend any money on it.
I posted recently Gigabyte have produced a new BIOS for some of their older motherboards but can't be bothered to post them on the motherboard support page - see Ridiculous Gigabyte BIOS Support vs. Spectre / Meltdown
You have to submit a support ticket and Gigabyte will send you the BIOS,
-
-
Only asrock provided until now patches for z97 h97 x99 chipsets and above for all motherboards.