Data: CASIE
Negative Trigger
Intel
's
microcode
updates
,
including
one
to
address
Vulnerability-related.PatchVulnerability
the
recently
revealed
Foreshadow
flaw
.
Microsoft
has released
Vulnerability-related.PatchVulnerability
a
set
of
new
microcode
patches
from
Intel
that
address
Vulnerability-related.PatchVulnerability
Spectre
vulnerabilities
,
as
well
as
the
recently
disclosed
Foreshadow
attacks
.
The
updates
are available
Vulnerability-related.PatchVulnerability
for
all
supported
versions
of
Windows
10
and
Windows
Server
.
As
noted
on
the
support
page
for
Windows
10
version
1803
,
the
microcode
updates
include
mitigations
for
Spectre
Variant
3a
,
CVE-2018-3640
,
Spectre
Variant
4
,
CVE-2018-3639
,
as
well
as
two
of
the
Foreshadow
bugs
,
CVE-2018-3615
and
CVE-2018-3646
,
which
are also known as
Vulnerability-related.DiscoverVulnerability
L1TF
or
'L1
Terminal
Fault
'
.
As
Microsoft
recently
highlighted
Vulnerability-related.DiscoverVulnerability
,
Windows
machines
with
affected
Intel
CPUs
will
need
microcode
as
well
as
software
patches
to
mitigate
Vulnerability-related.PatchVulnerability
the
Foreshadow
attacks
.
Microsoft
began
helping
Intel
deliver
Vulnerability-related.PatchVulnerability
its
microcode
updates
after
Intel
first
started
addressing
Vulnerability-related.PatchVulnerability
the
Meltdown
and
Spectre
CPU
flaws
in
January
.
The
microcode
updates
help
mitigate
Vulnerability-related.PatchVulnerability
Spectre
Variant
2
,
CVE-2017-5715
.
Foreshadow
includes
CVE-2018-3615
,
which
affects
Vulnerability-related.DiscoverVulnerability
Intel
's
Software
Guard
Extensions
(
SGX
)
enclaves
,
while
CVE-2018-3620
affects
Vulnerability-related.DiscoverVulnerability
operating
systems
and
System
Management
Mode
(
SMM
)
memory
.
CVE-2018-3646
impacts
Vulnerability-related.DiscoverVulnerability
virtualization
.
Microsoft
made
Vulnerability-related.PatchVulnerability
the
updates
,
all
dated
8/20/2018
,
available
Vulnerability-related.PatchVulnerability
on
the
Microsoft
Update
Catalog
this
week
.