Intel announced on Thursday changes to its next-generation Xeon and Core processors intended to protect users against the near-universal Spectre and Meltdown vulnerabilities first disclosed in January.
In a statement, CEO Brian Krzanich said the new chips are expected to ship later this year. “As we bring these new products to the market, ensuring they deliver the performance improvements people expect from us is critical,” he said. “Our goal is to offer not only the best performance, but also the best secure performance.”
Variant 1 of Spectre will continue to be addressed with software changes, while hardware changes will mitigate Spectre variant 2 and Meltdown (variant 3), according to Intel.
The Spectre and Meltdown are a result of features built into chips to allow them to run faster, which is why Intel must release entire new chips to completely fix the problem. A malicious actor who takes advantage of these vulnerabilities could gain access to information that’s supposed to be secure, from usernames and passwords to sensitive data contained within programs on users’ machines.
“We have redesigned parts of the processor to introduce new levels of protection through partitioning that will protect against both Variants 2 and 3,” Krzanich said. “Think of this partitioning as additional ‘protective walls’ between applications and user privilege levels to create an obstacle for bad actors.”
Per Intel, software-based microcode updates have been issued for “100 percent of Intel products launched in the past five years” affected by the vulnerabilities. The updates, however, may slightly impact performance.
Intel is currently facing more than 30 lawsuits from customers who claim harm stemming from the vulnerabilities.