Windows 10: Microsoft CVE-2017-5715: Guidance to mitigate speculative execution side-channel...

Discus and support Microsoft CVE-2017-5715: Guidance to mitigate speculative execution side-channel... in AntiVirus, Firewalls and System Security to solve the problem; Microsoft CVE-2017-5715: Guidance to mitigate speculative execution side-channel vulnerabilitiesMicrosoft CVE-2017-5753: Guidance to mitigate... Discussion in 'AntiVirus, Firewalls and System Security' started by Aradhyaswamy K M, Mar 12, 2024.

  1. Microsoft CVE-2017-5715: Guidance to mitigate speculative execution side-channel...


    Microsoft CVE-2017-5715: Guidance to mitigate speculative execution side-channel vulnerabilitiesMicrosoft CVE-2017-5753: Guidance to mitigate speculative execution side-channel vulnerabilitiesMicrosoft CVE-2017-5754: Guidance to mitigate speculative execution side-channel vulnerabilitiesMicrosoft CVE-2018-3693: Guidance to mitigate speculative execution side-channel vulnerabilities

    :)
     
    Aradhyaswamy K M, Mar 12, 2024
    #1
  2. Brink Win User

    Surface Guidance for speculative execution side-channel vulnerability


    Source: https://support.microsoft.com/en-us/...n-side-channel


    See also: Surface devices and the new speculative execution side-channel vulnerabilities (May 2018) Surface
     
    Brink, Mar 12, 2024
    #2
  3. Brink Win User
    Surface Guidance for speculative execution side-channel vulnerability Surface

    Source: https://support.microsoft.com/en-us/...n-side-channel


    See also: Surface devices and the new speculative execution side-channel vulnerabilities (May 2018) Surface
     
    Brink, Mar 12, 2024
    #3
  4. ddelo Win User

    Microsoft CVE-2017-5715: Guidance to mitigate speculative execution side-channel...

    Enable Retpoline to mitigate Spectre variant 2 (CVE-2017-5715)

    Hi and welcome to TenForums *Smile
    First things first... stupid question is only the one that hasn't been asked....

    Second, Microsoft Cumulative Update KB4494441 (OS Build 17763.503), enables “Retpoline” by default if Spectre Variant 2 (CVE-2017-5715) is enabled. In other words, Retpoline is enabled by default, in Clent SKUs with a Retpoline capable CPU, without the need to alter the Registry in any way!

    So if you want SSBDWindowsSupportEnabledSystemWide to be True, yes you need to add the two registry entries with the values 8 and 3.
    You can read about it here

    In my system, I haven't added the two registry entries which results to SSBDWindowsSupportEnabledSystemWide not enabled (=False). That's my choice though and I cannot suggest to anyone that it's the correct one! *sarc
     
    ddelo, Mar 12, 2024
    #4
Thema:

Microsoft CVE-2017-5715: Guidance to mitigate speculative execution side-channel...

Loading...
  1. Microsoft CVE-2017-5715: Guidance to mitigate speculative execution side-channel... - Similar Threads - Microsoft CVE 2017

  2. Enable Retpoline to mitigate Spectre variant 2 (CVE-2017-5715)

    in AntiVirus, Firewalls and System Security
    Enable Retpoline to mitigate Spectre variant 2 (CVE-2017-5715): Following the release of Cumulative Update KB4482887 Windows 10 v1809 Build 17763.348 there is a lot of discussion regarding the new Retpoline mitigation. This feature has been included in the KB4482887, but is disabled by default. In future updates, or the next Feature...
  3. Q3 2018 Intel Speculative Execution Side Channel Update

    in Windows 10 News
    Q3 2018 Intel Speculative Execution Side Channel Update: Intel ID: INTEL-SA-00161 Product family: Multiple Impact of vulnerability: Information Disclosure Severity rating: See Security Advisory text Original release: 08/14/2018 Last revised: 08/14/2018 Summary: Security researchers have identified a speculative execution...
  4. Surface Guidance for speculative execution side-channel vulnerability

    in Windows 10 News
    Surface Guidance for speculative execution side-channel vulnerability: Surface Guidance to protect against speculative execution side-channel vulnerabilities Applies to: Surface Pro 4, Surface Book, Surface Studio, Surface Pro (latest), Surface Laptop, Surface Pro with LTE Advanced, Surface Book 2 - 13 inch, Surface Book 2 - 15 inch...
  5. New Speculative Execution Side-Channel Vunerability (Variant 4)

    in Windows 10 News
    New Speculative Execution Side-Channel Vunerability (Variant 4): Addressing New Research for Side-Channel Analysis Details and Mitigation Information for Variant 4 By Leslie Culbertson Following Google Project Zero’s (GPZ)* disclosure of speculative execution-based side-channel analysis methods in January, Intel has continued working...
  6. Mitigating speculative execution side-channel attacks in Edge and IE11

    in Windows 10 News
    Mitigating speculative execution side-channel attacks in Edge and IE11: Today, Google Project Zero published details of a class of vulnerabilities which can be exploited by speculative execution side-channel attacks. These techniques can be used via JavaScript code running in the browser, which may allow attackers to gain access to memory in the...
  7. SQL Server Guidance against speculative execution vulnerabilities

    in Windows 10 News
    SQL Server Guidance against speculative execution vulnerabilities: SQL Server Guidance to protect against speculative execution side-channel vulnerabilities Summary Microsoft is aware of a new publicly disclosed class of vulnerabilities referred to as “speculative execution side-channel attacks” that affect many modern processors and...
  8. Mitigating speculative execution side channel hardware vulnerabilities

    in Windows 10 News
    Mitigating speculative execution side channel hardware vulnerabilities: On January 3rd, 2018, Microsoft released an advisory and security updates related to a newly discovered class of hardware vulnerabilities involving speculative execution side channels (known as Spectre and Meltdown) that affect AMD, ARM, and Intel CPUs to varying degrees. If...
  9. Windows Server Guidance against speculative execution vulnerabilities

    in Windows 10 News
    Windows Server Guidance against speculative execution vulnerabilities: Windows Server guidance to protect against speculative execution side-channel vulnerabilities Summary Microsoft is aware of a new publicly disclosed class of vulnerabilities that are referred to as “speculative execution side-channel attacks” that affect many modern...
  10. Windows Client Guidance against speculative execution vulnerabilities

    in Windows 10 News
    Windows Client Guidance against speculative execution vulnerabilities: Windows Client Guidance for IT Pros to protect against speculative execution side-channel vulnerabilities Summary Microsoft is aware of a new publicly disclosed class of vulnerabilities that are called “speculative execution side-channel attacks” that affect many...