Are new Intel CPUs vulnerable to Meltdown/Spectre?

The processors that were already announced and are about to be launched in the near future will still be vulnerable to both Spectre v2 and Meltdown if patches and/or firmware is not applied correctly. Spectre v1 was not entirely fixed with the latest patches. Most recent products have patches available, although not always functioning very well.
You can easily cross-reference the list of affected products to the soon-to-be-launched ones.


To answer your question directly: Intel plans to fix this on a hardware level in 2018. Intel's CEO stated the following in the earnings call for Q4 2017

Our near term focus is on delivering high quality mitigations to protect our customers infrastructure from these exploits. We’re working to incorporate silicon-based changed to future products that will directly address the Spectre and Meltdown threats in hardware. And those products will begin appearing later this year.

I don't know what "appearing" means in this context (announcement of new products or release of new products).

Conclusion: throughout 2018 anybody who plans to buy a new processor (or a new laptop/PC with a new processor) will have to take some security measures to secure themselves against Spectre and Meltdown IF the accompanying firmware or the OS has no proper protection against these vulnerabilities.

Edit: After the conversation with R.. I rechecked Intel's official statements. All mitigation attempts and patches only target Meltdown and Spectre v2, because:

For the bounds check bypass methodthat's Spectre v1, Intel’s mitigation strategy is focused on software modifications.

It remains unclear if this will remain Intel's strategy throughout the next product cycle.


It’s all speculation at this point. Normally, the 9th gen of Intel’s CPUs should be protected from the meltdown bug, and that generation is scheduled for the second half of 2018 (according to HKEPC). But that generation of CPUs was already quite ahead in development when the bug was found so it's quite likely that 9th gen will also be affected, in which case we'll have to wait for the 10th gen (second half of 2019 or beginning of 2020).


Are new intel CPUs vulnerable to Meltdown/Spectre?

When software mitigation protections are not correctly implemented new Intel CPUs are vulnerable to both Meltdown and Spectre.

Has intel released any information about new processors?

In an investors call Intel indicated that they are "working to incorporate silicon-based changed to future products that will directly address the Spectre and Meltdown threats in hardware."

Note that in-development silicon might not be at an early enough stage in development to fully resolve the exploits without software mitigation or performance impacts. Ideally they would implement a full fix that doesn't require software mitigation and has full performance, but the root of one of the exploits is branch prediction, meant to increase performance, and they may be unable - particularly at this stage of development - to keep full performance of branch prediction and still prevent this exploit.

So while these silicon fixes may "address" the threats, they may not be fully resolved wholly in silicon.

So, from what production date on will/are intel processors secured against speculative execution attacks?

At this time there is no definitive date or production schedule. Late 2018 is the timeframe to release silicon that "addresses" these threats, but there is no guarantee that release will fully resolve the issue in hardware without additional software mitigation. Performance has not been addressed at all in released or known information.