Get refund for your CPU. Clearly broken design, most likely not fixable by microcode update.
Products should do what the marketing says they should do.
...which is, that they were never designed to be side-channel-resistant. As early as the 80286 Intel was saying protected mode is not a real security boundary, only a mechanism to avoid accidental errors instead of deliberate maliciousness.