PT-2018-2467 · Arm+4 · Arm+4
Publicado
2018-05-03
·
Atualizado
2022-04-18
·
CVE-2018-3693
CVSS v3.1
5.6
Média
| Vetor | AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Systems with microprocessors (affected versions not specified)
Description
The issue is related to microprocessors utilizing speculative execution and branch prediction, which may allow unauthorized disclosure of information to an attacker with local user access. This is achieved through a speculative buffer overflow and side-channel analysis. The vulnerability is associated with the branch prediction module's functionality in Intel, ARM, and AMD processors. Exploitation of the vulnerability enables an attacker to disclose protected information by creating conditions for incorrect branch prediction.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Amd
Arm
Centos
Intel
Red Hat