News Intel Deploys Undisclosed Microcode Security Updates For CPUs Going Back To Coffee Lake

Releasing the patches some time before disclosing the vulnerability has become a standard practice at this point, and it can give people some time to upgrade. It's actually not a bad idea to release patches before disclosing any specific vulnerability.
 
However, this medium type has disadvantages since it doesn't alter the hardware or the firmware. Instead, the operating system must load the microcode during each restart.
Not sure I get this. As far as I understand it, microcode updates are stored in volatile memory on the processor. This means they always have to be loaded at restart, no matter where they come from. The only thing that varies is how early in the boot process (or after boot) they're applied
 
  • Like
Reactions: Matt_ogu812