CVE-2018-3620
intel core_i3: Sicherheitsluecke
mediumEPSS 5.6%
Description
Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.
Source: cvelistv5NVD (NIST)
Affected products
The following versions are affected. Older releases of the same product line are also vulnerable unless stated otherwise.
intelcore_i3
intelcore_i5
intelcore_i7
intelcore_m
intelcore_m3
intelcore_m5
intelcore_m7
intelxeon
Metrics
92.7 %
Critical — this CVE ranks in the top fifth of all CVEs scored today (rank ≥ 80%).
Show all metrics
Severity
medium
96.72
no public PoC known
5.6
Published
2018-08-14 19:00 UTC
References & sources
- https://www.kb.cert.org/vuls/id/982149third-party-advisoryx_refsource_CERT-VN
- http://www.securitytracker.com/id/1041451vdb-entryx_refsource_SECTRACK
- https://security.gentoo.org/glsa/201810-06vendor-advisoryx_refsource_GENTOO
- https://usn.ubuntu.com/3741-2/vendor-advisoryx_refsource_UBUNTU
- https://access.redhat.com/errata/RHSA-2018:2393vendor-advisoryx_refsource_REDHAT
- https://usn.ubuntu.com/3823-1/vendor-advisoryx_refsource_UBUNTU
- https://access.redhat.com/errata/RHSA-2018:2389vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2018:2390vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2018:2403vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/105080vdb-entryx_refsource_BID
- https://access.redhat.com/errata/RHSA-2018:2395vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2018:2384vendor-advisoryx_refsource_REDHAT
- https://usn.ubuntu.com/3740-2/vendor-advisoryx_refsource_UBUNTU
- https://security.FreeBSD.org/advisories/FreeBSD-SA-18:09.l1tf.ascvendor-advisoryx_refsource_FREEBSD
- https://www.debian.org/security/2018/dsa-4274vendor-advisoryx_refsource_DEBIAN
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XRFKQWYV2H4BV75CUNGCGE5TNVQCLBGZ/vendor-advisoryx_refsource_FEDORA
- https://access.redhat.com/errata/RHSA-2018:2388vendor-advisoryx_refsource_REDHAT
- https://usn.ubuntu.com/3741-1/vendor-advisoryx_refsource_UBUNTU
- https://access.redhat.com/errata/RHSA-2018:2603vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2018:2402vendor-advisoryx_refsource_REDHAT