• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
TechIntel

Intel Admits Security Flaws Contained in Most PC Chips It Sold for Years

By
Aaron Pressman
Aaron Pressman
Down Arrow Button Icon
By
Aaron Pressman
Aaron Pressman
Down Arrow Button Icon
November 21, 2017, 10:59 AM ET

Intel admitted this week that there were multiple, serious security flaws in software it had hidden in virtually every PC chip it sold in recent years.

The security holes reside mainly in a feature called the “management engine” on Intel CPUs, like its brand new 8th generation Core Processor series. Intel said it had developed software patches to eliminate the problems, but listed only one manufacturer—Lenovo—that had created a way for customers to actually update their computers. While some other PC makers listed fixes on their own web sites, some of the vulnerable chips reside in smart, connected devices (part of the so-called Internet of Things) and may never be updated. Update: Later on Tuesday, Intel added links for the fixes for customers of Dell and its own hardware products.

“In response to issues identified by external researchers, Intel has performed an in-depth comprehensive security review of our Intel Management Engine (ME), Intel Server Platform Services (SPS), and Intel Trusted Execution Engine (TXE) with the objective of enhancing firmware resilience,” the company said in a bulletin posted on its web site dated Nov. 20. “As a result, Intel has identified security vulnerabilities that could potentially place impacted platforms at risk.”

The problems include allowing hackers to load and run unauthorized programs, crash a system or impersonate system security checks, Intel said. In many, but not all cases, the hacker would need physical access to a PC to exploit the vulnerabilities. The flaws exist in almost every mainstream chip Intel has sold in recent years, including its older 6th generation Core chips, introduced in 2015, and its 7th generation, which came on the market last year.

Get Data Sheet, Fortune’s technology newsletter.</em></strong></p> <p>Intel said customers should look to their PC manufacturers for fixes. “We worked with equipment manufacturers on firmware and software updates addressing these vulnerabilities, and these updates are available now,” the company said in a statement to Fortune. “Businesses, systems administrators, and system owners using computers or devices that incorporate these Intel products should check with their equipment manufacturers or vendors for updates for their systems, and apply any applicable updates as soon as possible.”

Although Intel’s chips are designed to let users decide which programs to run, the microprocessors also have several kinds of software built in to provide certain features. The management engine, which is designed to provide among other functions security while a computer boots up, runs a version of an older operating system called Minix. And it’s by exploiting that software that researchers have recently found ways to trick the Intel chips into running malicious code.

Some big tech companies that use Intel (INTC) chips, like Google (GOOGL), have talked about how they plan to disable the management engine as a way of eliminating its security vulnerabilities.

In its announcement, Intel also thanked two researchers, Mark Ermolov and Maxim Goryachy from Positive Technologies Research, for helping uncover the vulnerabilities.

Goryachy said the researchers would present more details of their findings at the upcoming Black Hat Europe conference. The deep seated position of the flaws was particularly troubling, he said, but praised Intel’s response.

“Given this privileged level of access, a hacker with malicious intent could also use it to attack a target below the radar of traditional software-based countermeasures such as anti-virus,” Goryachy said. “We worked closely with Intel to ensure responsible disclosure and the company has been very proactive by developing a tool which helps people detect if their systems are vulnerable.”

About the Author
By Aaron Pressman
See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

duke
Big TechAmazon
Amazon Prime Video reaches deal with Duke Blue Devils to air 3 games per season
By The Associated PressMay 1, 2026
13 minutes ago
valerie
CommentaryLayoffs
Tesla’s former HR chief: the AI layoff panic Is built on a false premise—here’s what most workers need to know
By Valerie Capers WorkmanMay 1, 2026
20 minutes ago
AI
AIdisruption
Meet the Americans dismissing AI hype and using it with ingenuity: ‘The efficiencies gained out of it have been tremendous’
By Cathy Bussewitz and The Associated PressMay 1, 2026
21 minutes ago
Tim Cook, chief executive officer of Apple Inc., inside the Steve Jobs Theater during an event at Apple Park campus in Cupertino, California, US.
AICFO Daily
Apple just posted $111 billion in revenue. Now its CFO and incoming CEO are teaming up
By Sheryl EstradaMay 1, 2026
32 minutes ago
Exclusive: Startup Fun raises $72 million for the serious business of converting crypto and cash
CryptoVenture Capital
Exclusive: Startup Fun raises $72 million for the serious business of converting crypto and cash
By Ben WeissMay 1, 2026
1 hour ago
The fruit fly cancer researcher who built his first prototype out of lollipop sticks and straws
NewslettersTerm Sheet
The fruit fly cancer researcher who built his first prototype out of lollipop sticks and straws
By Allie GarfinkleMay 1, 2026
2 hours ago

Most Popular

China dominates the world's lithium supply. The U.S. just found 328 years' worth in its own backyard
North America
China dominates the world's lithium supply. The U.S. just found 328 years' worth in its own backyard
By Jake AngeloApril 30, 2026
19 hours ago
Apple cofounder Ronald Wayne—whose stake would be worth up to $400 billion had he not sold it in 1976—says that at 91, he has no regrets
Success
Apple cofounder Ronald Wayne—whose stake would be worth up to $400 billion had he not sold it in 1976—says that at 91, he has no regrets
By Preston ForeApril 27, 2026
4 days ago
Accenture's Julie Sweet blew up 50 years of company history. She says the hardest part is still ahead
Conferences
Accenture's Julie Sweet blew up 50 years of company history. She says the hardest part is still ahead
By Nick LichtenbergApril 29, 2026
2 days ago
America shot its arsenal empty in 2 wars. Now it needs Beijing's permission to reload
Commentary
America shot its arsenal empty in 2 wars. Now it needs Beijing's permission to reload
By Steve H. Hanke and Jeffrey WengApril 30, 2026
20 hours ago
Google Cloud revenue is now 18% of Alphabet's business. Is this the beginning of the end of Google's search identity?
Big Tech
Google Cloud revenue is now 18% of Alphabet's business. Is this the beginning of the end of Google's search identity?
By Alexei OreskovicApril 29, 2026
2 days ago
Exclusive: America's largest Black-owned bank launches podcast with mission to unlock hidden shame holding back generational wealth
Banking
Exclusive: America's largest Black-owned bank launches podcast with mission to unlock hidden shame holding back generational wealth
By Nick LichtenbergApril 29, 2026
2 days ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.