/r/netsec pointed to what seems to be the mitigation guide. It has the same "SA-00075":


It talks about turning something off with a Windows executable. Was it necessarily on to begin with? Anybody familiar with this product? I thought this was a sub-OS level thing.

one most of our windows machines it's on. You can run this: netstat -na | findstr "\<16993\> \<16992\> \<16994\> \<16995\> \<623\> \<664\>"

to see if it's actively running. the binary is LSM.exe. Intel recommends you erase the file. see the PDF for details.

Apparently this will make it locally exploitable only now and A firmware fix is required to completely fix the problem.

