Latest updates

Updated on 27/Jul/2018

This page provides links to the latest updates related to the Arm speculative processor vulnerability. 

Update history

Date Page(s) Section(s) Change notes
27 July 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Cache Speculation Side-channels whitepaper New version (v2.3) released.
24 July 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Cache Speculation Side-channels whitepaper New version (v2.2) released.
10 July 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability What are the attack mechanisms? Variant 1 information updated.
https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/frequently-asked-questions Frequently Asked Questions Affected processors FAQ added.
18 June 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Firmware interfaces for mitigating cache speculation vulnerabilities Updated to v1.4.
https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Arm Trusted Firmware exposure to speculative processor vulnerabilities Updated to v1.6.
https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Software implications for Spectre/Meltdown on Arm Cores Updated to v1.3.

https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/frequently-asked-questions Frequently Asked Questions CVE-2018-3665 question added.
31 May 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability
What are the attack mechanisms?
What about future Arm Cortex processors?
Cortex-A76 information added.
24 May 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Cache Speculation Side-channels whitepaper New version (v2.1) released.

https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Arm Trusted Firmware exposure to speculative processor vulnerabilities New version (v1.5) released.
21 May 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability What are the attack mechanisms? Variant 4 information added.
Variant 3a CVE number added.

https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/frequently-asked-questions Frequently Asked Questions FAQ Updates.

https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Cache Speculation Side-channels whitepaper New version (v2.0) released.

https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Firmware interfaces for mitigating CVE-2017-5715 System Software on Arm Systems New version (v1.3) released.

https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Software implications for Spectre/Meltdown on Arm Cores New version (v1.2) released.

https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Arm Trusted Firmware exposure to speculative processor vulnerabilities New version (v1.4) released.

https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Cache Speculation Side-channels Linux Kernel Mitigations New version (v1.6) released.
3 May 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Cache Speculation Side-channels whitepaper New version (v1.3) released.
27 March 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/latest-updates/cache-speculation-issues-update 'Spectre' Variant 2 Updated GitHub link for Arm Trusted Firmware Security Advisory TFV 6.
9 March 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Firmware interfaces for mitigating CVE-2017-5715 System Software on Arm Systems Document updated to version 1.2.
2 March 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability Arm Processor Security Update Cortex-A12 added to affected processors table.
Variant 2 actions revised.
26 February 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/latest-updates/cache-speculation-issues-update Cache Speculation Issues Update Added a link to the new download.
26 February 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Cache Speculation Side-channels Linux Kernel Mitigations Added new download.
23 February 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability Vulnerability of Speculative Processors to Cache Timing Side-Channel Mechanism Updated content.
23 February 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/downloads Cache Speculation Side-channels Whitepaper (updated),
Arm Trusted Firmware exposure to speculative processor vulnerabilities (New),
Software implications for Spectre/Meltdown on Arm Cores (New)
New and updated downloads.
23 February 2018 https://developer.arm.com/support/security-update/latest-updates New page. Added Latest news section.
23 February 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/frequently-asked-questions What are SpectrePrime and MeltdownPrime and will additional work be required to mitigate these variants? Added new FAQ.
2 February 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/frequently-asked-questions Is Google's Retpoline considered effective for mitigating Variant 2 vulnerability on Arm based systems?
Will compilers provide mitigations for Variant 2?
Added new FAQs.
31 January 2018 https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability/frequently-asked-questions Are software mitigations available, and will I get them? Added new Firmware interfaces for mitigating CVE-2017-5715 System Software on Arm Systems specification file.

 


Cache Speculation Issues Update

Prior to the public disclosure of three new security vulnerabilities, now known as Spectre and Meltdown, by researchers in Google’s Project Zero team on January 3, and the weeks thereafter, Arm worked closely with its ecosystem to ensure these vulnerabilities are well understood and effectively mitigated against. This has resulted in some fine-tuning of the mitigations to improve their ease of use and deployment.

Read now