Security News > 2023 > March > Microsoft releases Windows security updates for Intel CPU flaws

Microsoft releases Windows security updates for Intel CPU flaws
2023-03-03 01:02

Microsoft has released out-of-band security updates for 'Memory Mapped I/O Stale Data' information disclosure vulnerabilities in Intel CPUs.

The Mapped I/O side-channel vulnerabilities were initially disclosed by Intel on June 14th, 2022, warning that the flaws could allow processes running in a virtual machine to access data from another virtual machine.

"An attacker who successfully exploited these vulnerabilities might be able to read privileged data across trust boundaries," explained Microsoft.

According to Microsoft's advisory, no security updates were released except mitigations applied for Windows Server 2019 and Windows Server 2022.

Microsoft has released a somewhat confusing set of security updates for Windows 10, Windows 11, and Windows Server that address these vulnerabilities.

These are likely being released as optional, manual updates as the mitigations for these vulnerabilities can cause performance issues, and the flaws may not be fully resolved without disabling Intel Hyper-Threading Technology in some scenarios.


News URL

https://www.bleepingcomputer.com/news/microsoft/microsoft-releases-windows-security-updates-for-intel-cpu-flaws/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Microsoft 674 804 4455 4133 3701 13093
Intel 6799 271 744 378 28 1421