Join Sign in
0800 527 867
Contact us >
THE LAPTOP COMPANY LTD
  • Browse Range ˅
    • All of Government
    • Apple
    • Dell
    • Dynabook Toshiba
    • HP
    • Lenovo
    • Microsoft Surface
    • Education Shop
    • Work from Home gear
    • All Products
  • Solutions
    • AOG Government Agencies >
      • All of Government Product Catalogues
      • AoG Broader Outcomes
      • Gateway
    • Modernise Your Workforce with Surface >
      • Surface Pro for Business Copilot+ PC Intel
      • Surface Laptop for Business Copilot+ PC Intel
      • Surface Copilot Plus
      • Surface Pro Copilot Plus 5G
      • Surface Laptop 6
      • Surface Pro 10
      • Modernise Your Workforce
      • Surface Repairability
      • Surface Windows 11 Migration
      • Microsoft for Healthcare
      • Microsoft Design and Construction
      • Surface Broader Outcomes
      • Switch to Surface
    • NEW HP EliteBook G1 >
      • HP EliteBook X G1
      • HP EliteBook 8 G1
      • Choose Your EliteBook G11 >
        • HP EliteBook 1040 G11
        • HP EliteBook 800 G11
        • HP EliteBook 600 G11
    • Ctrl with HP >
      • Which HP ZBook G11?
      • HP ZBook Power G11
      • HP Windows 11 Migration
      • HP Carbon Offsets
      • HP Premium+ Support
      • HP Sustainability
      • HP Fleets
    • Apple with TLC
    • Financial Sector
    • Higher Education
    • Local Government
    • Meeting rooms
    • Hybrid Work
    • Schools and Students >
      • Smarter Classrooms
  • Services
    • Modern Fleet Mgmt
    • Procurement services
    • Fleet leasing
    • Windows 11 Migration
    • Intune & Device mgmt
    • Autopilot & Device Deployment
    • Jamf - Apple Mgmt
    • UXx User Experiences
    • RecoverMax - trade-ins
    • Renew - fix & re-use
  • Support
    • Get Support
    • Surface Repairs
    • Apple Repairs
    • About Us
    • Terms and Conditions >
      • Terms of Sale
      • Terms and Conditions of Service
      • Returns and Refunds
      • Privacy
  • Insights

'Meltdown' and 'Spectre' critical vulnerability

10/1/2018

 
A critical vulnerability has been discovered in the architecture of the modern CPU. There are three different attack methods and are leveraging the reading of privilege memory with a side channel.

The attack methods named are 'Meltdown' and 'Spectre'. While initially only thought to be an Intel vulnerability, the CPU's speculative execution methods that these attacks target are shared by Intel, AMD and Arm.

The attacks themselves do not access sensitive data on your storage, however they do potentially allow malicious code to access speculatively executed information.

Details from Intel can be found here.
Details from AMD can be found here.
Details from Arm can be found here.
Details from Microsoft can be found here.

​More information on Speculative Execution can be found here.
Detailed information (from Google) about the vulnerabilities can be found here.
Picture

There are multiple parts to patching this vulnerability with operating system patches, and the OEM manufacturer updating the microcode of the processor itself:
  • Variant 1: Bounds check bypass
    • Requires operating system updates
    • Vulnerable to Spectre attack
  • Variant 2: Branch target injection
    • Requires processor microcode updates
    • Requires operating system updates
    • Vulnerable to Spectre attack
  • Variant 3: Rogue data cache load
    • Requires operating system updates
    • Vulnerable to Meltdown attack

For all of our hardware customers; we will be maintaining a set of links on this page for your reference.  If you require any support on this issue then please contact our support team or your account manager through your usual channels. ​For our ongoing SCCM support contract customers, we have already started the update management process and will liaise with you directly on performing updates as they become available.

Microsoft has released a blog post about the vulnerabilities and the impact of them. Take note that this article discusses the performance impacts of patching your system. It appears that older operating systems such as Windows 7 and 8 have a more noticeable performance hit than Windows 10.

Running Windows Update should patch the Operating System part of the vulnerability, below are the OEM links that will be maintained with firmware/BIOS updates.

OEM Links;
  • Lenovo
  • Toshiba
  • HP

    The Laptop Company

    News and announcements

    Archives

    December 2019
    June 2019
    April 2019
    November 2018
    July 2018
    January 2018
    December 2017
    November 2017

    Contact Us
    x

      Contact us 

      Would you like to know more about these updates, or information about the services available from The Laptop Company?  For personal assistance during business hours, please call 0800 527 867.
    Send

.

Get in touch

About
Legal information
Contact
© COPYRIGHT THE LAPTOP COMPANY (LTD) 2022. ALL RIGHTS RESERVED.
Enquire >
Click here to Contact us
x
  • Browse Range ˅
    • All of Government
    • Apple
    • Dell
    • Dynabook Toshiba
    • HP
    • Lenovo
    • Microsoft Surface
    • Education Shop
    • Work from Home gear
    • All Products
  • Solutions
    • AOG Government Agencies >
      • All of Government Product Catalogues
      • AoG Broader Outcomes
      • Gateway
    • Modernise Your Workforce with Surface >
      • Surface Pro for Business Copilot+ PC Intel
      • Surface Laptop for Business Copilot+ PC Intel
      • Surface Copilot Plus
      • Surface Pro Copilot Plus 5G
      • Surface Laptop 6
      • Surface Pro 10
      • Modernise Your Workforce
      • Surface Repairability
      • Surface Windows 11 Migration
      • Microsoft for Healthcare
      • Microsoft Design and Construction
      • Surface Broader Outcomes
      • Switch to Surface
    • NEW HP EliteBook G1 >
      • HP EliteBook X G1
      • HP EliteBook 8 G1
      • Choose Your EliteBook G11 >
        • HP EliteBook 1040 G11
        • HP EliteBook 800 G11
        • HP EliteBook 600 G11
    • Ctrl with HP >
      • Which HP ZBook G11?
      • HP ZBook Power G11
      • HP Windows 11 Migration
      • HP Carbon Offsets
      • HP Premium+ Support
      • HP Sustainability
      • HP Fleets
    • Apple with TLC
    • Financial Sector
    • Higher Education
    • Local Government
    • Meeting rooms
    • Hybrid Work
    • Schools and Students >
      • Smarter Classrooms
  • Services
    • Modern Fleet Mgmt
    • Procurement services
    • Fleet leasing
    • Windows 11 Migration
    • Intune & Device mgmt
    • Autopilot & Device Deployment
    • Jamf - Apple Mgmt
    • UXx User Experiences
    • RecoverMax - trade-ins
    • Renew - fix & re-use
  • Support
    • Get Support
    • Surface Repairs
    • Apple Repairs
    • About Us
    • Terms and Conditions >
      • Terms of Sale
      • Terms and Conditions of Service
      • Returns and Refunds
      • Privacy
  • Insights