The Meltdown and Spectre mitigation effort continues

Mar 1, 2018 18:00 GMT  ·  By
This new update is only shipped to Skylake systems on Windows 10 Fall Creators Update
   This new update is only shipped to Skylake systems on Windows 10 Fall Creators Update

Microsoft is releasing new security updates for Windows 10 devices running the Fall Creators Update (version 1709) and powered by Skylake chips.

Shipped as part of update KB4090007, the new microcode updates are based on the patches developed by Intel and whose validation has recently been completed.

Microsoft says that while only Skylake processors are getting these firmware security updates at first, more chipsets will be patched in the future, as Intel completes development and makes them available to the company.

Meltdown and Spectre bugs were disclosed in early January, and Microsoft itself delivered its first mitigations shortly after that, with Intel’s own patches landing in the first week of the month. The company, however, pulled the security updates following reports of unexpected reboots, promising to roll out new firmware updates for Spectre Variant 2 in February.

Development of these patches has recently been completed, and with validation also successful, Microsoft itself has started the rollout phase to systems powered by Skylake and running the Windows 10 Fall Creators Update.

More antivirus guidance

Also in January, Microsoft updated its policy to require antivirus software for Windows 10 to set a dedicated registry key and thus determine their compatibility status in order to prevent any potential issues that might arise following the release of new microcode security updates.

The same thing applies today as well, and Microsoft reminds that while it’s working with antivirus vendors to make sure that all their products are compatible, some systems might not receive the new firmware updates if they’re not running whitelisted security products.

“We require that AV software is up to date and compatible. We will continue to require that an AV compatibility check is made before delivering the latest Windows security updates via Windows Update, until we have a sufficient level of AV software compatibility. We recommend users check with their AV provider on compatibility of their installed AV software products,” John Cable, Director of Program Management, Windows Servicing and Delivery, says.

Systems running the Windows 10 Fall Creators Update on a Skylake chip can download the KB4090007 microcode update from the Microsoft Update Catalog here.