Windows Speculative Execution Configuration Check

Shahzad Subhani
1 min readSep 14, 2020

The Purpose of this article is to share a quick way to resolve a vulnerability named Windows Speculative Execution Configuration Check . In most of the cases , when information security team performs a vulnerability assessment than the system admins runs windows update manually or deploy them via Microsoft SCCM (System Center Configuration Manager) . However for this vulnerability , you need to create certain registry values in order to close it .

Here are the relevant details .

Vulnerability Name : Windows Speculative Execution Configuration Check

Severity : Medium

Nessus Plugin ID : 132101

CVEs : CVE-2017–5715, CVE-2017–5753, CVE-2017–5754, CVE-2018–3615, CVE-2018–3620, CVE-2018–3639, CVE-2018–3646, CVE-2018–11091, CVE-2018–12126, CVE-2018–12127,CVE-2018–12130, CVE-2019–11135

Proposed Solution :

Create required registry values as mentioned in this article .

Procedure :

I have created this registry value which can be used on any Windows 2012 Server and it will cover the above mentioned CVEs . You can download the file and change its extension to reg . In order to deploy it , just double click on the file and add it to the registry.

Reference :

Microsoft

--

--

Shahzad Subhani

A Seasoned, Enthusiastic Information Security Professional.Founder of GISPP, a Global community Platform for Pakistani Information Security Professionals.