Link to home
Start Free TrialLog in
Avatar of sara2000
sara2000

asked on

Intel Vulnerability Foreshadow L1 Terminal Fault

Vmware has release patches for the recent security vulnerability. I applied the patches for  New Intel Vulnerability Foreshadow L1 Terminal Fault. Vcenter is waring to enable VMkernel.boot.hyperthreadingMitigation.
Vmware experts out there, what you have done for it? Did you enable it?
Avatar of Andrew Hancock (VMware vExpert PRO / EE Fellow/British Beekeeper)
Andrew Hancock (VMware vExpert PRO / EE Fellow/British Beekeeper)
Flag of United Kingdom of Great Britain and Northern Ireland image

Did you patch vCenter Server FIRST?

This article highlights the process and planning...

https://www.virtualizationhowto.com/2018/08/new-intel-vulnerability-foreshadow-l1-terminal-fault-vmware-affected/

At present we are awaiting further information, before we jump in like penguins, like we did before with Spectre and Meltdown.
Avatar of sara2000
sara2000

ASKER

I patched the vcenter then one ESXi host and noticed the alert.
ASKER CERTIFIED SOLUTION
Avatar of Andrew Hancock (VMware vExpert PRO / EE Fellow/British Beekeeper)
Andrew Hancock (VMware vExpert PRO / EE Fellow/British Beekeeper)
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
We only patched the vcenter on the main production site. Hope there will not be any impact on the VM's performance?
If you only patched vCenter Server you are fine, you've more patching to do, and you are still unpatched.

You need t have a thorough read through the details of the patch, before applying and understanding, if there will be any capacity issues, once the patch is applied.