Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access with guest OS privilege via a terminal page fault and a side-channel analysis.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1481-1 | linux-4.9 security update |
Debian DLA |
DLA-1506-1 | intel-microcode security update |
Debian DSA |
DSA-4274-1 | xen security update |
Debian DSA |
DSA-4279-1 | linux security update |
EUVD |
EUVD-2018-15500 | Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access with guest OS privilege via a terminal page fault and a side-channel analysis. |
Ubuntu USN |
USN-3740-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3740-2 | Linux kernel (HWE) vulnerabilities |
Ubuntu USN |
USN-3741-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3741-2 | Linux kernel (Xenial HWE) vulnerabilities |
Ubuntu USN |
USN-3742-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3742-2 | Linux kernel (Trusty HWE) vulnerabilities |
Ubuntu USN |
USN-3756-1 | Intel Microcode vulnerabilities |
Ubuntu USN |
USN-3823-1 | Linux kernel vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: intel
Published:
Updated: 2024-09-17T02:27:21.556Z
Reserved: 2017-12-28T00:00:00
Link: CVE-2018-3646
No data.
Status : Modified
Published: 2018-08-14T19:29:00.920
Modified: 2024-11-21T04:05:50.020
Link: CVE-2018-3646
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN