ASUS Update on Speculative Execution and Indirect Branch Prediction Side Channel Analysis Method
2018/01/05
ASUS is aware of recent security research disclosing software analysis methods known as Meltdown and Spectre that, when used for malicious purposes, have the potential to improperly gather sensitive data from computing devices that are operating as designed. ASUS is working closely with platform owners and OS partners to provide solutions.
Symptom Description
Malicious code utilizing a new method of side channel analysis and running locally on a normally operating platform has the potential to allow the inference of data values from memory. The use of this method might facilitate access to unauthorized information to an attacker with local user access.
The following Intel-based platforms are impacted by this issue, and the list may be modified based on the updates from platform owners at a later time.
- 2nd generation Intel®Core™ processors
- 3rd generation Intel®Core™ processors
- 4th generation Intel®Core™ processors
- 5th generation Intel®Core™ processors
- 6th generation Intel®Core™ processors
- 7th generation Intel®Core™ processors
- 8th generation Intel®Core™ processors
- Intel®Atom™ Processor Z Series
- Intel®Celeron®Processor J Series
- Intel®Celeron®Processor N Series
- Intel®Pentium®Processor J Series
- Intel®Pentium®Processor N Series
For more details, please visit Intel Security Center.
Important Notice: ASUS BIOS Update FAQ
(1)How can I find “System Model Name”?
https://www.asus.com/support/FAQ/1030673
(2)How do I update my computer’s BIOS?
https://www.asus.com/support/FAQ/1008859
In order to successfully install the latest software solutions for overall protection, please keep your computer plugged in and do not turn off your computer during the BIOS update process.
ASUS Solutions
To enhance resiliency to the side channel analysis method, ASUS will provide a solution in a forthcoming BIOS update. Together with the latest Windows OS Hot Fix update, your computer will be well protected.
Although applying the BIOS update and OS Hot Fix will mitigate the risk of the side channel analysis method, computer performance might be impacted. However, any performance impacts are workload-dependent and may vary by hardware generation and implementation by the chip manufacturer. For most users, the performance impact should not be significant.
(1)ASUS BIOS Update
Please find our first wave model list below.We are working with Intel to make new BIOS updates available and will release to customers as soon as possible.
https://www.asus.com/support/#.
More details will be added to this document as they become available.
Laptops:
Gaming Laptops:
Commercial Desktop:
System Model Name
|
Target Release Date
|
D630MT / D630SF (SD590) / D631MT (MD590) | Released, please update to BIOS version 0705 (or later version) |
D830MT / D830SF (SD800) / D831MT (MD800) | Released, please update to BIOS version 0805 (or later version) |
D520MT / D520SF (SD330) / 521MT (MD330) | Kabylake: Released, please update to BIOS version 1003 (or later version) Skylake: Released, please update to BIOS version 1404 (or later version) |
D324MT | Released, please update to BIOS version 0603 (or later version) |
D320MT | Kabylake: Released, please update to BIOS version 1003 (or later version) Skylake: Released, please update to BIOS version 1404 (or later version) |
D320SF | Kabylake: Released, please update to BIOS version 0803 (or later version) Skylake: Released, please update to BIOS version 0804 (or later version) |
D322MT | Released, please update to BIOS version 0604 (or later version) |
D620MT(BM2CF) / BM3CF(MD580) / D620SF(BP1CF/SD580) | Released, please update to BIOS version 0805 (or later version) |
D820MT(BM2CE) / D820SF(BP1CE/SD790) / BM3CE(MD790) | Released, please update to BIOS version 0805 (or later version) |
BM1AF / BP1AF (SD570) / BM6AF (MD570) | Released, please update to BIOS version 2001 (or later version) |
BM1AE / BP1AE (SD780) / BM6AE (MD780) | Released, please update to BIOS version 2001 (or later version) |
BM1AD / BP1AD (SD310) / BM6AD (MD310) | Released, please update to BIOS version 2001 (or later version) |
Gaming Desktops:
Mini PCs:
(2)Windows OS Hot Fix Update
The OS Build version and KB number listed below are the latest version released from Microsoft to solve this issue. Please make sure your computer has been updated.
OS Build
|
OS Security updates
|
Internet Explorer 11
|
Microsoft Edge
|
Windows 7: OS build 6.1.7600.xx
|
Please upgrade to Win 7 with SP1, then using Win 7 SP1 security updates
|
||
Windows 7 (SP1): OS build 6.1.7601.xx
|
N/A
|
||
Windows 8: OS build 6.2.9200.xx
|
Please upgrade Win 8.1, then using Win 8.1 security updates
|
||
Windows 8.1: OS build 6.3.9200.xx
|
N/A
|
||
Windows 8.1 (SP1): OS build 6.3.9600.xx
|
N/A
|
||
Win10 TH1 : Version 1507, OS build 10240.xx
|
Please upgrade your OS to TH2 above, then using their security updates
|
||
Win10 TH2 : Version 1511, OS build 10586.xx
|
|||
Win10 RS1 : Version 1607, OS build 14393.xx
|
|||
Win10 RS2 : Version 1703, OS build 15063.xx
|
|||
Win10 RS3 : Version 1709, OS build 16299.xx
|