[German]Microsoft has released a series of firmware updates for the Surface Laptop, Surface Pro 4 and Surface Pro this week. Here is a short overview.
Security Advisory Notification (July 27, 2018)
On July 27, 2018 Microsoft informed me in an e-mail about the changes to the firmware updates. Here is the relevant text:
Security Advisories Released or Updated on July 26, 2018
=========================================
* Microsoft Security Advisory ADV180012
– Title: Microsoft Guidance for Speculative Store Bypass
– ADV180012
– Reason for Revision: Microsoft is announcing the availability of
updates for Surface Pro 4, Surface Laptop, Surface Pro Model
1796, and Surface Pro with Advanced LTE Model 1807 that address
the Speculative Store Bypass (SSB) (CVE-2018-3639) vulnerability.
See the Affected Products table for links to download and install
the updates. See Microsoft Knowledge Base article 4073065 for
more information.
– Originally posted: May 21, 2018
– Updated: July 26, 2018
– Version: 4.0
* Microsoft Security Advisory ADV180013
– Title: Microsoft Guidance for Rogue System Register Read
– ADV180013
– Reason for Revision: Microsoft is announcing the availability
of updates for Surface Pro 4, Surface Laptop, Surface Pro Model
1796, and Surface Pro with Advanced LTE Model 1807 that address
the Rogue System Registry Read (CVE-2018-3640) vulnerabiliuty.
See the Affected Products table for links to download and install
the updates. See Microsoft Knowledge Base article 4073065 for
more information.
– Originally posted: May 21, 2018
– Updated: July 26, 2018
– Version: 2.0
(Surface Pro, Source: Microsoft)
Firmware-Updates for Surface Laptop
On July 25, 2018 Microsoft released an extensive firmware update for the Surface Laptop. The package is described in this Microsoft article. The file with the firmware update SurfaceLaptop_Win10_16299_1803508_1.msi should offer improvements of the system stability and reliability. Microsoft is also attempting to address potential vulnerabilities, including Microsoft security advisories ADV180012 und ADV180013 (Spectre and Meltdown). Microsoft also provides a whole series of additional firmware packages for the camera, graphics, etc.
Firmware-Updates for Surface Pro 4
The firmware update for the Surface Pro 4 was also released on July 25, 2018. The package is described in this Microsoft article. The file with the firmware update SurfacePro4_Win10_16299_1803001_0.msi should offer improvements in system stability and reliability. In addition, Microsoft has integrated Microcode Update for potential vulnerabilities, including Microsoft security advisories ADV180012 and ADV180013 (Spectre and Meltdown). Microsoft also provides a whole series of additional firmware packages for the camera, graphics, etc.
Firmware-Updates for Surface Pro
The Surface Pro (2017 model in Wi-Fi and LTE version) also receives the firmware update with the updates against Spectre V2, but only on July 26, 2018 Microsoft wrote this blog post for the firmware update. Please note the notes on installing the firmware updates.
Addendum: Barb Bowman has tweeted here experience with this firmware update.
read https://t.co/iVipiCYsLW about the ugliness of the installs from WU. 3 restarts here. Once in the middle of installing, black screened &would not recover. Had to hold down power. Came back up, installed more stuff. asked for reboot. installed more stuff. etc
— Barb Bowman (@barbbowman) 28. Juli 2018