Avatar of nav2567
nav2567Flag for United States of America

asked on 

Windows Server guidance to protect against speculative execution side-channel vulnerabilities

Hello,

I am working on a server security report and looking at this link: https://support.microsoft.com/en-us/help/4072698/windows-server-speculative-execution-side-channel-vulnerabilities-prot

I follow the instruction to enable mitigations for CVE-2017-5715 and applied these registry changes:

reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management" /v FeatureSettingsOverride /t REG_DWORD /d 0 /f
reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management" /v FeatureSettingsOverrideMask /t REG_DWORD /d 3 /f

I run the Get-SpeculationControlSettings and see the line "Windows OS Support for branch target injection mitigation is disabled by system policy is still showing FALSE - Please see the attached.  

Anyone who knows please advise.  

Thanks.
CVE-2017-5715.png
VulnerabilitiesWindows OSSecurity* WINDOWS servers 2016

Avatar of undefined
Last Comment
nav2567
ASKER CERTIFIED SOLUTION
Avatar of McKnife
McKnife
Flag of Germany image

Blurred text
THIS SOLUTION IS ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
Avatar of nav2567
nav2567
Flag of United States of America image

ASKER

Thanks, everyone!

Windows OS
Windows OS

This topic area includes legacy versions of Windows prior to Windows 2000: Windows 3/3.1, Windows 95 and Windows 98, plus any other Windows-related versions including Windows Mobile.

129K
Questions
--
Followers
--
Top Experts
Get a personalized solution from industry experts
Ask the experts
Read over 600 more reviews

TRUSTED BY

IBM logoIntel logoMicrosoft logoUbisoft logoSAP logo
Qualcomm logoCitrix Systems logoWorkday logoErnst & Young logo
High performer badgeUsers love us badge
LinkedIn logoFacebook logoX logoInstagram logoTikTok logoYouTube logo