ASUS Update on Speculative Execution and Indirect Branch Prediction Side Channel Analysis Method

2018/01/05

ASUS is aware of recent security research disclosing software analysis methods known as Meltdown and Spectre that, when used for malicious purposes, have the potential to improperly gather sensitive data from computing devices that are operating as designed. ASUS is working closely with platform owners and OS partners to provide solutions.


Symptom Description

Malicious code utilizing a new method of side channel analysis and running locally on a normally operating platform has the potential to allow the inference of data values from memory. The use of this method might facilitate access to unauthorized information to an attacker with local user access.
The following Intel-based platforms are impacted by this issue, and the list may be modified based on the updates from platform owners at a later time.

  • 2nd generation Intel®Core™ processors
  • 3rd generation Intel®Core™ processors
  • 4th generation Intel®Core™ processors
  • 5th generation Intel®Core™ processors
  • 6th generation Intel®Core™ processors
  • 7th generation Intel®Core™ processors
  • 8th generation Intel®Core™ processors
  • Intel®Atom™ Processor Z Series
  • Intel®Celeron®Processor J Series
  • Intel®Celeron®Processor N Series
  • Intel®Pentium®Processor J Series
  • Intel®Pentium®Processor N Series

For more details, please visit Intel Security Center.


Important Notice: ASUS BIOS Update FAQ

(1)How can I find “System Model Name”?
https://www.asus.com/support/FAQ/1030673

(2)How do I update my computer’s BIOS?
https://www.asus.com/support/FAQ/1008859

In order to successfully install the latest software solutions for overall protection, please keep your computer plugged in and do not turn off your computer during the BIOS update process.


ASUS Solutions

To enhance resiliency to the side channel analysis method, ASUS will provide a solution in a forthcoming BIOS update. Together with the latest Windows OS Hot Fix update, your computer will be well protected.
Although applying the BIOS update and OS Hot Fix will mitigate the risk of the side channel analysis method, computer performance might be impacted. However, any performance impacts are workload-dependent and may vary by hardware generation and implementation by the chip manufacturer. For most users, the performance impact should not be significant.

(1)ASUS BIOS Update

Please find our first wave model list below and download the appropriate BIOS update from the ASUS Support Site:
https://www.asus.com/support/#.

More details will be added to this document as they become available.

Laptops: