{"id":7930,"date":"2018-04-27T12:30:00","date_gmt":"2018-04-27T10:30:00","guid":{"rendered":"https:\/\/spo-comm.sandboxsite.de\/update-on-spectre-and-meltdown-part-2\/"},"modified":"2025-04-01T13:56:17","modified_gmt":"2025-04-01T11:56:17","slug":"update-on-spectre-and-meltdown-part-2","status":"publish","type":"post","link":"https:\/\/spo-comm.de\/en\/update-on-spectre-and-meltdown-part-2\/","title":{"rendered":"Update on Spectre and Meltdown &#8211; Part 2"},"content":{"rendered":"<h2>Windows update KB4090007 for Windows 10<\/h2>\n<p>Hoping for BIOS updates for Intel processors from 2013 and 2014 has come to an end. The <a href=\"https:\/\/support.microsoft.com\/de-de\/help\/4090007\/intel-microcode-updates\" data-htmlarea-external=\"1\" target=\"_blank\" rel=\"noopener\">latest version of the optional Windows update KB4090007 from 24.04.2018<\/a> not only brings microcode updates for Coffee Lake (Core i-8000), Kaby Lake (i-7000) and Skylake (i-6000), but also for Broadwell (i-5000) and Haswell (i-4000). The update is available for both 32-bit and 64-bit versions of Windows 10 &#8211; but can still only be downloaded from the <a href=\"https:\/\/www.catalog.update.microsoft.com\/Home.aspx\" data-htmlarea-external=\"1\" target=\"_blank\" rel=\"noopener\">Windows Update Catalog<\/a>&nbsp; via an unsecured http connection. However, Windows 10 computers with Intel Atom processors still require BIOS updates.<\/p>\n<p>The update also solves another problem: BIOS updates with supposedly new microcode updates have been released for some systems since December 2017, but the PowerShell script Get-SpeculationControl still reports no BTI protection.<\/p>\n<h2>Meltdown patches for Windows 7<\/h2>\n<p>Microsoft does not provide microcode updates for Windows 7 via Windows Update &#8211; BIOS updates are still required here. At the end of March, there were serious problems with the patches for the 64-bit versions of Windows 7 against the Meltdown vulnerability, which became known as &#8220;Total Meltdown&#8221;. However, anyone who has applied the patches from the beginning (early March) is protected against Total Meltdown.<\/p>\n<p>A <a href=\"https:\/\/blog.xpnsec.com\/total-meltdown-cve-2018-1038\/\" data-htmlarea-external=\"1\" target=\"_blank\" rel=\"noopener\">PoC (Proof of Concept)<\/a>&nbsp; has been published to ensure that you are protected against Total Meltdown.<\/p>\n<p>Source: <a href=\"https:\/\/www.heise.de\/security\/meldung\/CPU-Sicherheitsluecken-unter-Windows-Spectre-Schutz-auch-fuer-Haswell-4035547.html\" data-htmlarea-external=\"1\" target=\"_blank\" rel=\"noopener\">heise<\/a><\/p>\n<p class=\"more\"><a href=\"\/blog\/wissen\/spectre-und-meltdown-news-zu-den-aktuellen-cpu-problemen\" data-htmlarea-external=\"1\" class=\"button\">Read the first part on Spectre and Meltdown<\/a><\/p>\n<p class=\"more\"><a href=\"\/blog\/wissen\/update-zu-spectre-und-meltdown\" data-htmlarea-external=\"1\" class=\"button\">Read the first update on Spectre and Meltdown<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Owners of older PCs with Windows 10 are currently waiting in vain for BIOS updates. These are required by the CPU to protect Windows 10 against Spectre (variant 2) &#8211; but are not provided. An optional Windows update now provides a remedy.<\/p>\n","protected":false},"author":1,"featured_media":4967,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[90],"tags":[],"class_list":["post-7930","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-know-how"],"acf":[],"_links":{"self":[{"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/posts\/7930","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/comments?post=7930"}],"version-history":[{"count":1,"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/posts\/7930\/revisions"}],"predecessor-version":[{"id":17097,"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/posts\/7930\/revisions\/17097"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/media\/4967"}],"wp:attachment":[{"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/media?parent=7930"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/categories?post=7930"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/spo-comm.de\/en\/wp-json\/wp\/v2\/tags?post=7930"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}