QID 91989
QID 91989: Microsoft Windows Microcode Updates for Vulnerabilities in MMIO Not Installed
Microsoft is making available Intel-validated microcode updates that are related to Microarchitectural Data Sampling.
QID Detection Logic (Authenticated):
OS: Windows 10 64 bit (versions 1507, 1607, 1703, 1709, 1803, 1809), Windows 11,Windows 2016, Windows 2019 Version 1809 Windows 2022
This QID checks file version of "%windir%\System32\mcupdate_GenuineIntel.dll" on a Windows targets running on affected Intel CPU. The affected Process Name is identified via registry: "HKLM\HARDWARE\DESCRIPTION\System\CentralProcessor\ 0 \ProcessorNameString.
An attacker who successfully exploited these vulnerabilities may be able to read privileged data across trust boundaries.
Solution
Customers are advised to refer to Summary of Intel microcode updates for more details pertaining to this vulnerability.
Vendor References
- KB5019106 -
support.microsoft.com/en-us/topic/kb5019106-security-vulnerabilities-exist-in-memory-mapped-i-o-for-some-intel-processors-for-windows-server-2022-march-2-2023-706cddc7-3f34-41e0-98d7-b87aac959b0b - KB5019177 -
support.microsoft.com/en-us/topic/kb5019177-security-vulnerabilities-exist-in-memory-mapped-i-o-for-some-intel-processors-for-windows-11-version-21h2-march-2-2023-6315c71e-1130-48e8-9225-1d83b0676224 - KB5019178 -
support.microsoft.com/en-us/topic/kb5019178-security-vulnerabilities-exist-in-memory-mapped-i-o-for-some-intel-processors-for-windows-11-version-22h2-march-2-2023-5b50d3f4-6064-441e-b80d-dcff2d7e073d - KB5019180 -
support.microsoft.com/en-us/topic/kb5019180-security-vulnerabilities-exist-in-memory-mapped-i-o-for-some-intel-processors-for-windows-10-version-20h2-21h2-and-22h2-march-2-2023-f8c174f1-ce5c-469f-9eac-21f8af66b8ea - KB5019181 -
support.microsoft.com/en-us/topic/kb5019181-security-vulnerabilities-exist-in-memory-mapped-i-o-for-some-intel-processors-for-windows-server-2019-march-2-2023-10b2df3f-3552-4c7c-9c54-951bf8e1fc95 - KB5019182 -
support.microsoft.com/en-us/topic/kb5019182-security-vulnerabilities-exist-in-memory-mapped-i-o-for-some-intel-processors-for-windows-server-2016-march-2-2023-24e65908-dc09-4b35-913a-cdeb1a0e1ca4
CVEs related to QID 91989
Software Advisories