Monday, July 2nd 2018

Intel Releases "Spectre" Hardening Microcode Updates for "Ivy Bridge" thru "Westmere" Architectures

Intel today released the latest round of CPU micro-code updates for its processors, which expand support for Intel processor microarchitectures ranging all the way back to 1st generation Core "Westmere," and "Lynnfield," and including "Sandy Bridge" and "Ivy Bridge" along the way, at various stages of roll-out (beta, pre-production, and production). This update probably features hardening against "Spectre" variant 4, and perhaps even RSRR (rogue system register read) variant 3A, chronicled in CVE-2018-3640.
Source: Intel
Add your own comment

39 Comments on Intel Releases "Spectre" Hardening Microcode Updates for "Ivy Bridge" thru "Westmere" Architectures

#26
lexluthermiester
Caring1I'm glad your games run better, no need to worry about being a host for the virus and passing it to countless others that think the mitigation is a waste of time …. :rolleyes:
There are still no known exploits for Spectre in the wild. Why? Because while the vulnerabilities are there, they are also hard as hell to pull off remotely. Full stop, end of discussion. Meltdown is even more of a pain in the backside.

And before anyone says that it can be done with a specially crafted website, no it can't.
HTCQuestion: has anyone taken the time to bench with and without these patches to see the performance hit, if any, they have on the systems it's designed for?
Yes, and I quickly uninstalled them on my Win10 drive. The difference is generally 10% to 20%, depending on the benchmark used and the usage scenario. Not worth it.
Posted on Reply
#27
rtwjunkie
PC Gaming Enthusiast
lexluthermiesterYes, and I quickly uninstalled them on my Win10 drive. The difference is generally 10% to 20%, depending on the benchmark used and the usage scenario. Not worth it.
Wow!! :eek: That is hugely significant, and I will also say it seems to be not worth it.
Posted on Reply
#28
Static~Charge
Caring1Pedantic aren't WE!
Virus may have been the wrong term (semantics) but the fact remains (IF) stolen data is used that contains usernames/ passwords etc, it can be used to gain control of systems.
If an IQ test were implemented, quite a few members should fail based on their lack of ability to read between the lines and lack of lateral thinking.
Blow it off all you like. My reply wasn't a case of pendantry: you lacked the background information on the topic and tried to come off like an expert. Making snarky comments about other people's supposed lack of IQ (while ignoring your own) doesn't change the facts. :slap:
Posted on Reply
#29
rtwjunkie
PC Gaming Enthusiast
Static~ChargeBlow it off all you like. My reply wasn't a case of pendantry: you lacked the background information on the topic and tried to come off like an expert. Making snarky comments about other people's supposed lack of IQ (while ignoring your own) doesn't change the facts. :slap:
Actually, and not necessarily taking sides, but you missed the IQ insult about keeping him out of the forums if he had to take one. That person was reported by me for the cheap, intellectual superiority nastiness insult it was, and the post has been removed by mods. This is why you are directing IQ comments at Caring1. Caring was only responding to that person, and thus it looks out of context.
Posted on Reply
#30
Prima.Vera
lexluthermiesterThere are still no known exploits for Spectre in the wild. Why? Because while the vulnerabilities are there, they are also hard as hell to pull off remotely. Full stop, end of discussion. Meltdown is even more of a pain in the backside.

And before anyone says that it can be done with a specially crafted website, no it can't.


Yes, and I quickly uninstalled them on my Win10 drive. The difference is generally 10% to 20%, depending on the benchmark used and the usage scenario. Not worth it.
Can you please share the Patches code numbers for those 2? I would also like to uninstall them if possible...
Thank you.
Posted on Reply
#32
Caring1
rtwjunkieActually, and not necessarily taking sides, but you missed the IQ insult about keeping him out of the forums if he had to take one. That person was reported by me for the cheap, intellectual superiority nastiness insult it was, and the post has been removed by mods. This is why you are directing IQ comments at Caring1. Caring was only responding to that person, and thus it looks out of context.
Thank you, and coincidently I received the results from a FRIQ (Full Range IQ) test I undertook recently and came out in the high average range (79th percentile). The test was undertaken over a number of hours by a qualified professional too, not some 5 minute test online for the doubters.
Posted on Reply
#34
lexluthermiester
Prima.VeraThanks. Yeah, I have the latest stable release, automatically installed.
Right, and see, I'm using and older version, LTSB. The KB#'s are going to differ.
Caring1Thank you, and coincidently I received the results from a FRIQ (Full Range IQ) test I undertook recently and came out in the high average range (79th percentile). The test was undertaken over a number of hours by a qualified professional too, not some 5 minute test online for the doubters.
IQ's are only a metric of personal discovery. They are not a measurement of full potential.
Posted on Reply
#35
voltage
piloponthI was worried after Haswell microcode update, that my mobo manufacturer will not release updated BIOS. I was right, but after submitting a feedback form on a product page (Asus Z97M-PLUS) with serial number of the motherboard, I received email with BIOS binary with updated microcode.

Only bad thing that they didn't updated official BIOS on the product page. So please, bombard you mobo manufacturer with requests for updated BIOS.

Really great idea. I have to do this with my asus MAXIMUS V GENE

although i wont hold my breath, asus is not very good with supporting older product.
Posted on Reply
#37
trparky
lexluthermiesterYes, and I quickly uninstalled them on my Win10 drive. The difference is generally 10% to 20%, depending on the benchmark used and the usage scenario. Not worth it.
Even with PCID and INVPCID support?
Posted on Reply
Add your own comment
Apr 23rd, 2024 23:21 EDT change timezone

New Forum Posts

Popular Reviews

Controversial News Posts