Researchers Find Unfixable Security Flaw in 5 Years of Intel Chips

While Intel has issued patches to lessen the damage of exploits, researchers say the mitigations may not be enough to fully protect systems.

Advertisement
By Indo-Asian News Service | Updated: 7 March 2020 18:57 IST
Highlights
  • Virtually all Intel chips released in the past 5 years contain the flaw
  • Intel was notified of the vulnerabilities and released mitigations
  • The flaw can allow attackers to defeat a host of security measures

Photo Credit: YouTube/ Intel

Researchers have discovered a major new security flaw inside processors made by US multinational corporation and chip making giant Intel for the past five years. The flaw allow exploits to defeat hardware-based encryption and DRM protections. According to security company Positive Technologies, the security bug could break apart a chain of trust for important technology like silicon-based encryption, hardware authentication and modern DRM protections.

"We will provide more technical details in a full-length white paper to be published soon. We should point out that when our specialists contacted Intel PSIRT to report the vulnerability, Intel said the company was already aware of it (CVE-2019-0090). Intel understands they cannot fix the vulnerability in the ROM of existing hardware. So they are trying to block all possible exploitation vectors. The patch for CVE-2019-0090 addresses only one potential attack vector, involving the Integrated Sensors Hub (ISH). We think there might be many ways to exploit this vulnerability in ROM. Some of them might require local access; others need physical access," said Mark Ermolov, from Positive Technologies.

Virtually all Intel chips released in the past five years contain an unfixable flaw that may allow sophisticated attackers to defeat a host of security measures built into the silicon.

Advertisement

While Intel has issued patches to lessen the damage of exploits and make them harder, security firm Positive Technologies said the mitigations may not be enough to fully protect systems, ArsTechnica reported on Friday.

Advertisement

The security vulnerability discovered applies to machines with Intel chips built over the last five years or so. Intel said that it was notified of the vulnerabilities and released mitigations in May 2019 to be incorporated into firmware updates for motherboards and computer systems.

 

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: Intel, Intel Security Flaw
Advertisement

Related Stories

Popular Mobile Brands
  1. Best Diwali 2025 Wishes, Quotes, and Facebook Statuses to Share
  1. Ryugu Samples Reveal Ancient Water Flow on Asteroid for a Billion Years
  2. Scientists Create Most Detailed Radio Map of Early Universe Using MWA
  3. Mayor of Kingstown Season 4 OTT Release: Know When, Where to Watch Jeremy Renner's Crime Drama
  4. Our Fault Is Streaming Now: Know All About This Gabriel Guevara and Nicole Wallace Starrer
  5. The Conjuring: Last Rites Is Now Streaming Online: Know Where to Watch the Latest Installment from the Horror Franchise
  6. Delhi Crime Season 3 OTT Release: Know When to Watch This Shefali Shah Thriller Series
  7. Vast Space to Launch Haven-1, the World’s First Private Space Station in 2026
  8. Atmospheric Carbon Dioxide Soars to 424PPM, Marking Biggest Yearly Jump Ever
  9. Black Hole Tears Star Apart, Sends Out Powerful Flares Six Months Later
  10. Shakthi Thirumagan OTT Release: When, Where to Watch Vijay Antony-Starrer Action Thriller Online?
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.