Who’s affected by computer chip security flaw

Technology companies are scrambling to fix serious security flaws affecting computer processors built by Intel and other chipmakers and found in many of the world’s personal computers and smartphones.

Posted: Jan 4, 2018 3:18 PM

Technology companies are scrambling to fix serious security flaws affecting computer processors built by Intel and other chipmakers and found in many of the world’s personal computers and smartphones.

The two hardware bugs discovered can be exploited to allow the memory content of a computer to be leaked. Such a leak could potentially expose stored passwords and other sensitive data, including personal photos, emails and instant messages.

Researchers at Google’s Project Zero and academic institutions including the Graz University of Technology in Austria discovered the problem last year and disclosed it Wednesday.

There’s no evidence that bad actors have yet exploited the bugs, but companies from Microsoft to Mozilla said this week they have worked to patch up vulnerabilities to their operating systems and browsers to protect against one of the bugs. But researchers say the other is harder to fix and “will haunt us for quite some time.”

Here’s a look at what’s affected, what’s being done about it and whether you should worry.

___

INTEL INSIDE

Intel is at the center of the problem because it supplies the processors used in many of the world’s PCs. Researchers say one of the bugs, called Meltdown, affects nearly every processor it’s made since the mid-1990s.

While security flaws are typically limited to a specific company or product, Intel says the problem is “not a bug or a flaw in Intel products” but rather a broader problem affecting processing techniques common to modern computing platforms.

Both the chipmaker and Google, which informed Intel about the vulnerability last year, said they were planning to disclose the issue next week when fixes will be available. Tech companies typically withhold details about security problems until fixes are available so that hackers wouldn’t have a roadmap to exploit the flaws. But in this case, Intel was forced to disclose the problem Wednesday after British technology site The Register reported it, causing Intel’s stock to fall.

Most of the immediate fixes will be limited to the Meltdown bug. The other, Spectre, is harder to fix, but also harder to exploit, making it less of an immediate threat to consumer devices.

___

OTHER CHIPMAKERS

While researchers say the Meltdown bug is limited to Intel processors, they have verified Spectre as a problem for Intel, Advanced Micro Devices and ARM processors. AMD chips are also common in PCs, while ARM chips are found in many smartphones and other internet-connected products, including cars and home appliances.

AMD said there is “near zero risk” to its own processors, either because its chips are designed differently, or security fixes for Microsoft Windows and other operating systems will take care of the problem. ARM Holdings said it’s working with Intel, AMD and operating system vendors to address the problem. The ARM design is also used in Apple’s mobile chips; Apple didn’t immediately respond to inquiries on whether iPhones and other mobile products are affected.

___

WHAT TO DO NEXT?

There are limits to what consumers can do now to protect their computers.

Advice from the U.S Computer Emergency Readiness Team’s was grim. The federal organization says that “fully removing the vulnerability” requires replacing the hardware already embedded in millions of computing devices.

That’s not to say nothing can be done.

Consumers can mitigate the underlying vulnerability by making sure they patch up their operating systems with the latest software upgrades. There are already Meltdown patches for Microsoft’s Windows, Apple’s macOS and Linux. Mozilla says it’s also implementing a short-term mitigation that disables some capabilities of its Firefox browser. Google says Android devices are protected if they have the latest security updates.

“If you download the latest update from Microsoft, Apple, or Linux, then the problem is fixed for you and you don’t have to worry,” security researcher Rob Graham said in a blog post Thursday. “If you aren’t up to date, then there’s a lot of other nasties out there you should probably also be worrying about.”

Graham says fixing the problem will require a major design of processors and operating systems, but that’s not something most consumers will notice.

Terre Haute
Cloudy
49° wxIcon
Hi: 61° Lo: 36°
Feels Like: 45°
Robinson
Cloudy
50° wxIcon
Hi: 60° Lo: 38°
Feels Like: 45°
Indianapolis
Cloudy
47° wxIcon
Hi: 59° Lo: 36°
Feels Like: 44°
Rockville
Cloudy
47° wxIcon
Hi: 60° Lo: 34°
Feels Like: 42°
Casey
Cloudy
49° wxIcon
Hi: 58° Lo: 38°
Feels Like: 45°
Brazil
Cloudy
49° wxIcon
Hi: 61° Lo: 35°
Feels Like: 45°
Marshall
Cloudy
49° wxIcon
Hi: 59° Lo: 35°
Feels Like: 45°
Showers and possible storms this evening.
WTHI Planner
WTHI Temps
WTHI Radar

Latest Video

Image

Linton Moves into First Place in the SWIAC

Image

Rose Ends Their Regular Season with a Double Header Sweep

Image

Linton Takes Down Shakamak on the Diamond

Image

Loyalty day parade is back

Image

Community service project

Image

Bowling tournament continues

Image

ISU graduation

Image

ISU commencement ceremony

Image

Saturday Evening Forecast Update

Image

Saturday Morning Forecast Update

WTHI Events

 

Illinois Coronavirus Cases

(Widget updates once daily at 7 p.m. CT)

Cases: 1351395

Reported Deaths: 24524
CountyCasesDeaths
Cook54101710035
DuPage898211274
Will74840987
Lake66683981
Kane57921769
Winnebago32808470
Madison30352518
McHenry28331285
St. Clair27722512
Peoria22888300
Champaign20475144
Sangamon18572234
McLean17969178
Tazewell16803280
Rock Island14816307
Kankakee14040208
Kendall1289491
LaSalle12405241
Macon10651197
DeKalb9786119
Vermilion9481131
Adams8391122
Williamson7383129
Whiteside7119170
Boone664472
Ogle605581
Grundy583774
Clinton574890
Coles566194
Knox5509140
Jackson499464
Henry491263
Livingston478684
Effingham471572
Stephenson471081
Woodford470175
Macoupin467181
Marion4456115
Franklin442774
Monroe435093
Jefferson4259120
Lee412852
Randolph412684
Fulton387954
Morgan385781
Logan383757
Montgomery370373
Bureau368482
Christian363673
Fayette316455
Perry315260
Iroquois298566
McDonough280746
Jersey268749
Douglas257935
Saline256153
Lawrence240225
Shelby228637
Union224840
Crawford211426
Bond202924
Cass198224
Jo Daviess180324
Warren178946
Pike178652
Clark178433
Ford177246
Wayne176452
Hancock174831
Carroll174236
Richland174040
White169026
Edgar168539
Washington163625
Moultrie160126
Mason149345
De Witt148624
Clay147943
Piatt147614
Mercer145133
Greene143233
Johnson142314
Wabash134612
Massac133340
Cumberland128919
Menard122212
Jasper114918
Marshall104818
Hamilton83115
Schuyler7405
Brown7026
Pulaski6837
Stark63423
Edwards56812
Henderson52514
Calhoun5162
Putnam4793
Scott4781
Alexander46611
Gallatin4584
Hardin38412
Pope3154
Out of IL00
Unassigned02353

Indiana Coronavirus Cases

(Widget updates once daily at 8 p.m. ET)

Cases: 727764

Reported Deaths: 13397
CountyCasesDeaths
Marion995211738
Lake53461965
Allen40457675
St. Joseph35506550
Hamilton35489408
Elkhart28433441
Tippecanoe22359218
Vanderburgh22284396
Porter18668307
Johnson17905377
Hendricks17180315
Clark12930191
Madison12592339
Vigo12431246
Monroe11858170
LaPorte11821210
Delaware10648185
Howard9865216
Kosciusko9378117
Hancock8251140
Bartholomew8052155
Warrick7771155
Floyd7649177
Grant7027174
Wayne7026199
Boone6679101
Morgan6555139
Dubois6150117
Marshall6005111
Dearborn579277
Cass5788105
Henry5688103
Noble558883
Jackson500872
Shelby490296
Lawrence4505120
Harrison434772
Gibson434692
Clinton427053
DeKalb426484
Montgomery423588
Whitley394739
Huntington389080
Steuben383857
Miami380666
Knox371890
Jasper363847
Putnam358860
Wabash353379
Adams340654
Ripley339170
Jefferson328881
White313254
Daviess295899
Wells291081
Decatur284292
Fayette279262
Greene277385
Posey271033
Scott265453
LaGrange265370
Clay259146
Washington240032
Randolph239781
Spencer232031
Jennings229549
Starke215453
Fountain212046
Sullivan211142
Owen198156
Fulton194740
Jay192530
Carroll188320
Orange182654
Perry182637
Rush172925
Vermillion168543
Franklin167735
Tipton162445
Parke145916
Blackford134632
Pike133234
Pulaski116445
Newton107234
Brown101641
Crawford99314
Benton98414
Martin88315
Warren81715
Switzerland7848
Union70810
Ohio56411
Unassigned0414