Intel® Q2 Security Update on Side-Channel Analysis Method Vulnerability
Reference:
Security vulnerabilities (CVE-2018-3639, CVE-2018-3640, INTEL-SA-00115)
Vulnerability Summary:
Security researchers identified two software analysis methods that, if used for malicious purposes, have the potential to improperly gather sensitive data from computing devices with most modern processor architectures and operating systems.
For more information on the Intel® security vulnerabilities, please visit the Intel® Security Center website for further details.
Mitigation:
Fujitsu strongly advises all customers to update affected products. Updates are provided through BIOS updates. This page will be updated regularly as soon as new information is available.
Recommended steps:
1. It is necessary to update the BIOS.
2. Consult the list of affected Fujitsu systems for the timing of BIOS availability.
3. To download the respective updates for your system, please go to the Fujitsu Support page and perform the following steps:
- Select Product.
- Select Series.
- Select Model.
- Press Go.
- Download and install the latest BIOS update package.
Affected Products:
A number of Fujitsu products are affected by these vulnerabilities. Fujitsu is working to distribute patches for all affected products that are currently supported. Older systems that are no longer supported will not be patched.
Note:
Fujitsu does not manufacture the affected microprocessors that Fujitsu buys from third party suppliers and integrates into its products. Therefore, this communication is based on the information and recommendations Fujitsu has received from the third party suppliers of the affected microprocessors. Fujitsu does not warrant that this communication is applicable or complete for all customers and all situations. Fujitsu recommends that customers determine the applicability of this communication to their individual situation and take appropriate measures. Fujitsu is not liable for any damages or other negative effects resulting from customers’ use of this communication. All details of this communication are provided "as is" without any warranty or guarantee. Fujitsu reserves the right to change or update this communication at any time. Websites of other companies referred to in this communication are the sole responsibility of such other companies. Fujitsu does not assume any liability with respect to any information and materials provided by its suppliers, including on such websites. Designations may be protected by trademarks and/or copyrights of Fujitsu or the respective owners, the use of which by third parties for their own purposes may infringe the rights of such owners.