'Nearly all' Intel chips have major security flaw

(Image credit: Shutterstock)

Researchers have warned thatr Intel hardware may have another major security vulnerability, potentially putting millions of devices around the world at risk.

The security team at Bitdefender claim that "every machine" that uses an Intel processor and that runs Windows, Linux or FreeBSD is impacted by the vulnerability, which comes just months after the hugely damaging Spectre and Meltdown scares.

The company says that both enterprise and home users will be affected, as laptops, PCs and servers are all susceptible to the flaw.

Intel flaw

The vulnerability takes advantage of a flaw in Intel's hardware protection to open up a side-channel attack that would give attackers a way in to access all information in the operating system kernel memory. 

It does so by exploiting a feature known as 'speculative execution', which aims to speed up a device's CPU by getting it to make educated guesses as to which instructions might come next. However speculative execution can leave traces in-cache, which attackers can hijack to gain access into systems and the data within.

This new flaw bypasses all protections implemented after the discovery of Spectre and Meltdown in early 2018, meaning it can affect previously patched systems.

(Image credit: Intel)

“Criminals with knowledge of these attacks would have the power to uncover the most vital, best-protected information of both companies and private individuals around the world, and the corresponding power to steal, blackmail, sabotage and spy,” said Gavin Hill, vice president, datacenter and network security products at Bitdefender.

“Research into these attacks is on the cutting edge as it gets to the very roots of how modern CPUs operate and requires a thorough understanding of CPU internals, OS internals, and speculative-execution side-channel attacks in-general.”

Bitdefender says it has worked with Intel to create a fix for the flaw, which is available to download now. 

It added that ecosystem partners such as Microsoft and Linux has also patched the vulnerbaility, but users should ensure their systems are up to date immediately.

Mike Moore
Deputy Editor, TechRadar Pro

Mike Moore is Deputy Editor at TechRadar Pro. He has worked as a B2B and B2C tech journalist for nearly a decade, including at one of the UK's leading national newspapers and fellow Future title ITProPortal, and when he's not keeping track of all the latest enterprise and workplace trends, can most likely be found watching, following or taking part in some kind of sport.

Latest in Security
healthcare
Software bug meant NHS information was potentially “vulnerable to hackers”
A hacker wearing a hoodie sitting at a computer, his face hidden.
Experts warn this critical PHP vulnerability could be set to become a global problem
botnet
YouTubers targeted by blackmail campaign to promote malware on their channels
A close-up of a phone screen showing the Telegram, Signal and WhatsApp apps
Agentic AI has “profound” issues with security and privacy, Signal President says
botnet
Another top security camera maker is seeing devices hijacked into botnet
Bluetooth
Top Bluetooth chip security flaw could put a billion devices at risk worldwide
Latest in News
Apple's Craig Federighi demonstrates the iPhone Mirroring feature of macOS Sequoia at the Worldwide Developers Conference (WWDC) 2024.
Report: iOS 19 and macOS 16 could mark their biggest design overhaul in years – and we have one request
Google Gemini Calendar
Gemini is coming to Google Calendar, here’s how it will work and how to try it now
Lego Mario Kart – Mario & Standard Kart set on a shelf.
Lego just celebrated Mario Day in the best way possible, with an incredible Mario Kart set that's up for preorder now
TCL QM7K TV on orange background
TCL’s big, bright new mid-range mini-LED TVs have built-in Bang & Olufsen sound
Apple iPhone 16e
Which affordable phone wins the mid-range race: the iPhone 16e, Nothing 3a, or Samsung Galaxy A56? Our latest podcast tells all
An image of a Jackbox Games Party Pack
Jackbox games is coming to smart TVs in mid-2025, and I can’t wait to be reunited with one of my favorite party video games