Meltdown and Spectre vulnerabilities – Which products are not affected?
The Meltdown (CVE-2017-5754) and Spectre (CVE-2017-5715 and CVE-2017-5753) vulnerabilities are affecting a variety of processors from well-known vendors such as Intel, AMD, and ARM. Here, unauthorized users can gain access to sensitive data such as passwords, private keys, or certificates, which are cached in the main memory (kernel memory).
To close the vulnerabilities, CPU manufacturers and operating system manufacturers are working on workarounds. On the one hand, these include firmware (microcode) updates, which are provided via BIOS updates from hardware manufacturers for the affected systems. On the other hand, operating system updates should remedy the situation.
In more detail, there are three security flaws
- ● Variant 1: bounds check bypass (Spectre: CVE-2017-5753)
- ● Variant 2: branch target injection (Spectre: CVE-2017-5715)
- ● Variant 3: rogue data cache load (Meltdown: CVE-2017-5754)
What measures can you take?
- ● Be sure to follow all safety instructions and update recommendations of the hardware and software manufacturers.
- ● Allow automatic updates of your operating system and application software, and install deployed patches immediately.
- ● Install software (BIOS, updates, patches, etc.) only from trusted vendors.
- ● Contact us if you are unsure if your product is affected.
As long as no BIOS updates are available on our part, you can get an overview of those products that are NOT affected by the vulnerabilities according to present knowledge. The table is updated continuously.
NOT affected ICP products
Manufacturer | Platform | Chipset | Productgroups | Panel PC | Boards | IPC | Modules | CPU Cards |
Intel® AtomTM based | Diamondville | N270 | AFL AFL2 PPC SAILOR |
(e)KINO NANO NOVA WAFER PM HYPER |
ECW IBX |
ICE IEM |
PCISA PICOE WSB |
|
Pineview | D425 | KINO NANO NOVA WAFER |
PCISA PICOE WSB |
|||||
D510 | NANO PM |
IBX | PICOE | |||||
D525 | AFL2 PPC UPC |
KINO NANO NOVA WAFER PM |
ECW TANK |
ICE | PCISA PICOE WSB |
|||
Cedarview | N26 | AFL AFL2 PPC ICECARE |
KINO NANO WAFER |
TANK UIBX AVL |
ICE | |||
N28 | AFL2 PPC ICEFIRE2 ICEROCK3 |
KINO NANO WAFER HYPER |
DRPC | ICE | ||||
D2550 | KINO NANO WAFER |
ECN ECW TANK |
ICE | |||||
ARM based | Cortex | A53 | MODAT | |||||
A7 | MODAT | KAMIO | ||||||
AMD based | tbd | tbd | tbd | tbd | tbd | tbd | tbd |
Further information can be found on the manufacturer pages
We will keep you up to date about the vulnerabilities Spectre and Meltdown in our weekly newsletter.