CVE-2018-3620

Name
CVE-2018-3620
Description
Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Vendor Advisory https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00161.html
Third Party Advisory https://usn.ubuntu.com/3742-2/
Third Party Advisory https://usn.ubuntu.com/3742-1/
Third Party Advisory https://usn.ubuntu.com/3741-1/
Third Party Advisory https://usn.ubuntu.com/3740-2/
Third Party Advisory https://usn.ubuntu.com/3740-1/
Third Party Advisory https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03874en_us
Third Party Advisory https://security.FreeBSD.org/advisories/FreeBSD-SA-18:09.l1tf.asc
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2396
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2395
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2394
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2393
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2392
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2391
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2390
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2389
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2388
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2387
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2384
Third Party Advisory http://www.securitytracker.com/id/1041451
Third Party Advisory http://www.securityfocus.com/bid/105080
Third Party Advisory https://www.synology.com/support/security/Synology_SA_18_45
Third Party Advisory https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180814-cpusidechannel
Mitigation https://software.intel.com/security-software-guidance/software-guidance/l1-terminal-fault
Technical Description https://foreshadowattack.eu/
Third Party Advisory http://support.lenovo.com/us/en/solutions/LEN-24163
Third Party Advisory https://security.netapp.com/advisory/ntap-20180815-0001/
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2404
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2403
Third Party Advisory https://access.redhat.com/errata/RHSA-2018:2402
Third Party Advisory https://support.f5.com/csp/article/K95275140
Third Party Advisory https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2018-0009
Third Party Advisory https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XRFKQWYV2H4BV75CUNGCGE5TNVQCLBGZ/
Third Party Advisory https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/V4UWGORQWCENCIF2BHWUEF2ODBV75QS2/
Third Party Advisory http://xenbits.xen.org/xsa/advisory-273.html
Third Party Advisory http://www.vmware.com/security/advisories/VMSA-2018-0021.html
Third Party Advisory http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180815-01-cpu-en
CERT-VN https://www.kb.cert.org/vuls/id/982149
DEBIAN https://www.debian.org/security/2018/dsa-4274
DEBIAN https://www.debian.org/security/2018/dsa-4279
UBUNTU https://usn.ubuntu.com/3741-2/
CONFIRM https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV180018
MLIST https://lists.debian.org/debian-lts-announce/2018/08/msg00029.html
REDHAT https://access.redhat.com/errata/RHSA-2018:2603
REDHAT https://access.redhat.com/errata/RHSA-2018:2602
MLIST https://lists.debian.org/debian-lts-announce/2018/09/msg00017.html
CONFIRM https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf
GENTOO https://security.gentoo.org/glsa/201810-06
UBUNTU https://usn.ubuntu.com/3823-1/
CONFIRM https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0
MISC https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html
CONFIRM https://cert-portal.siemens.com/productcert/pdf/ssa-608355.pdf
MISC https://www.oracle.com/security-alerts/cpujul2020.html

Match rules

CPE URI Source package Min version Max version
cpe:2.3:h:intel:core_i3:390m:*:*:*:*:*:*:* core_i3 == None == 390m
cpe:2.3:h:intel:core_i3:530:*:*:*:*:*:*:* core_i3 == None == 530
cpe:2.3:h:intel:core_i3:2105:*:*:*:*:*:*:* core_i3 == None == 2105
cpe:2.3:h:intel:core_i3:2115c:*:*:*:*:*:*:* core_i3 == None == 2115c
cpe:2.3:h:intel:core_i3:2312m:*:*:*:*:*:*:* core_i3 == None == 2312m
cpe:2.3:h:intel:core_i3:2328m:*:*:*:*:*:*:* core_i3 == None == 2328m
cpe:2.3:h:intel:core_i3:2367m:*:*:*:*:*:*:* core_i3 == None == 2367m
cpe:2.3:h:intel:core_i3:2370m:*:*:*:*:*:*:* core_i3 == None == 2370m
cpe:2.3:h:intel:core_i3:3130m:*:*:*:*:*:*:* core_i3 == None == 3130m
cpe:2.3:h:intel:core_i3:3210:*:*:*:*:*:*:* core_i3 == None == 3210
cpe:2.3:h:intel:core_i3:3229y:*:*:*:*:*:*:* core_i3 == None == 3229y
cpe:2.3:h:intel:core_i3:3240:*:*:*:*:*:*:* core_i3 == None == 3240
cpe:2.3:h:intel:core_i3:3240t:*:*:*:*:*:*:* core_i3 == None == 3240t
cpe:2.3:h:intel:core_i3:4010y:*:*:*:*:*:*:* core_i3 == None == 4010y
cpe:2.3:h:intel:core_i3:4012y:*:*:*:*:*:*:* core_i3 == None == 4012y
cpe:2.3:h:intel:core_i3:4100u:*:*:*:*:*:*:* core_i3 == None == 4100u
cpe:2.3:h:intel:core_i3:4102e:*:*:*:*:*:*:* core_i3 == None == 4102e
cpe:2.3:h:intel:core_i3:4150:*:*:*:*:*:*:* core_i3 == None == 4150
cpe:2.3:h:intel:core_i3:4150t:*:*:*:*:*:*:* core_i3 == None == 4150t
cpe:2.3:h:intel:core_i3:4158u:*:*:*:*:*:*:* core_i3 == None == 4158u
cpe:2.3:h:intel:core_i3:4330te:*:*:*:*:*:*:* core_i3 == None == 4330te
cpe:2.3:h:intel:core_i3:4340:*:*:*:*:*:*:* core_i3 == None == 4340
cpe:2.3:h:intel:core_i3:4370t:*:*:*:*:*:*:* core_i3 == None == 4370t
cpe:2.3:h:intel:core_i3:5005u:*:*:*:*:*:*:* core_i3 == None == 5005u
cpe:2.3:h:intel:core_i3:6100e:*:*:*:*:*:*:* core_i3 == None == 6100e
cpe:2.3:h:intel:core_i3:6100h:*:*:*:*:*:*:* core_i3 == None == 6100h
cpe:2.3:h:intel:core_i3:6300:*:*:*:*:*:*:* core_i3 == None == 6300
cpe:2.3:h:intel:core_i3:6300t:*:*:*:*:*:*:* core_i3 == None == 6300t
cpe:2.3:h:intel:core_i3:330e:*:*:*:*:*:*:* core_i3 == None == 330e
cpe:2.3:h:intel:core_i3:330m:*:*:*:*:*:*:* core_i3 == None == 330m
cpe:2.3:h:intel:core_i3:540:*:*:*:*:*:*:* core_i3 == None == 540
cpe:2.3:h:intel:core_i3:550:*:*:*:*:*:*:* core_i3 == None == 550
cpe:2.3:h:intel:core_i3:2120:*:*:*:*:*:*:* core_i3 == None == 2120
cpe:2.3:h:intel:core_i3:2120t:*:*:*:*:*:*:* core_i3 == None == 2120t
cpe:2.3:h:intel:core_i3:2330e:*:*:*:*:*:*:* core_i3 == None == 2330e
cpe:2.3:h:intel:core_i3:2330m:*:*:*:*:*:*:* core_i3 == None == 2330m
cpe:2.3:h:intel:core_i3:2340ue:*:*:*:*:*:*:* core_i3 == None == 2340ue
cpe:2.3:h:intel:core_i3:2375m:*:*:*:*:*:*:* core_i3 == None == 2375m
cpe:2.3:h:intel:core_i3:2377m:*:*:*:*:*:*:* core_i3 == None == 2377m
cpe:2.3:h:intel:core_i3:3217u:*:*:*:*:*:*:* core_i3 == None == 3217u
cpe:2.3:h:intel:core_i3:3217ue:*:*:*:*:*:*:* core_i3 == None == 3217ue
cpe:2.3:h:intel:core_i3:3245:*:*:*:*:*:*:* core_i3 == None == 3245
cpe:2.3:h:intel:core_i3:3250:*:*:*:*:*:*:* core_i3 == None == 3250
cpe:2.3:h:intel:core_i3:4020y:*:*:*:*:*:*:* core_i3 == None == 4020y
cpe:2.3:h:intel:core_i3:4025u:*:*:*:*:*:*:* core_i3 == None == 4025u
cpe:2.3:h:intel:core_i3:4110e:*:*:*:*:*:*:* core_i3 == None == 4110e
cpe:2.3:h:intel:core_i3:4110m:*:*:*:*:*:*:* core_i3 == None == 4110m
cpe:2.3:h:intel:core_i3:4160:*:*:*:*:*:*:* core_i3 == None == 4160
cpe:2.3:h:intel:core_i3:4160t:*:*:*:*:*:*:* core_i3 == None == 4160t
cpe:2.3:h:intel:core_i3:4340te:*:*:*:*:*:*:* core_i3 == None == 4340te
cpe:2.3:h:intel:core_i3:4350:*:*:*:*:*:*:* core_i3 == None == 4350
cpe:2.3:h:intel:core_i3:5010u:*:*:*:*:*:*:* core_i3 == None == 5010u
cpe:2.3:h:intel:core_i3:5015u:*:*:*:*:*:*:* core_i3 == None == 5015u
cpe:2.3:h:intel:core_i3:6100t:*:*:*:*:*:*:* core_i3 == None == 6100t
cpe:2.3:h:intel:core_i3:6100te:*:*:*:*:*:*:* core_i3 == None == 6100te
cpe:2.3:h:intel:core_i3:6320:*:*:*:*:*:*:* core_i3 == None == 6320
cpe:2.3:h:intel:core_i3:8100:*:*:*:*:*:*:* core_i3 == None == 8100
cpe:2.3:h:intel:core_i3:330um:*:*:*:*:*:*:* core_i3 == None == 330um
cpe:2.3:h:intel:core_i3:350m:*:*:*:*:*:*:* core_i3 == None == 350m
cpe:2.3:h:intel:core_i3:370m:*:*:*:*:*:*:* core_i3 == None == 370m
cpe:2.3:h:intel:core_i3:560:*:*:*:*:*:*:* core_i3 == None == 560
cpe:2.3:h:intel:core_i3:2100:*:*:*:*:*:*:* core_i3 == None == 2100
cpe:2.3:h:intel:core_i3:2125:*:*:*:*:*:*:* core_i3 == None == 2125
cpe:2.3:h:intel:core_i3:2130:*:*:*:*:*:*:* core_i3 == None == 2130
cpe:2.3:h:intel:core_i3:2348m:*:*:*:*:*:*:* core_i3 == None == 2348m
cpe:2.3:h:intel:core_i3:2350m:*:*:*:*:*:*:* core_i3 == None == 2350m
cpe:2.3:h:intel:core_i3:3110m:*:*:*:*:*:*:* core_i3 == None == 3110m
cpe:2.3:h:intel:core_i3:3115c:*:*:*:*:*:*:* core_i3 == None == 3115c
cpe:2.3:h:intel:core_i3:3220:*:*:*:*:*:*:* core_i3 == None == 3220
cpe:2.3:h:intel:core_i3:3220t:*:*:*:*:*:*:* core_i3 == None == 3220t
cpe:2.3:h:intel:core_i3:3250t:*:*:*:*:*:*:* core_i3 == None == 3250t
cpe:2.3:h:intel:core_i3:4000m:*:*:*:*:*:*:* core_i3 == None == 4000m
cpe:2.3:h:intel:core_i3:4030u:*:*:*:*:*:*:* core_i3 == None == 4030u
cpe:2.3:h:intel:core_i3:4030y:*:*:*:*:*:*:* core_i3 == None == 4030y
cpe:2.3:h:intel:core_i3:4112e:*:*:*:*:*:*:* core_i3 == None == 4112e
cpe:2.3:h:intel:core_i3:4120u:*:*:*:*:*:*:* core_i3 == None == 4120u
cpe:2.3:h:intel:core_i3:4170:*:*:*:*:*:*:* core_i3 == None == 4170
cpe:2.3:h:intel:core_i3:4170t:*:*:*:*:*:*:* core_i3 == None == 4170t
cpe:2.3:h:intel:core_i3:4350t:*:*:*:*:*:*:* core_i3 == None == 4350t
cpe:2.3:h:intel:core_i3:4360:*:*:*:*:*:*:* core_i3 == None == 4360
cpe:2.3:h:intel:core_i3:5020u:*:*:*:*:*:*:* core_i3 == None == 5020u
cpe:2.3:h:intel:core_i3:5157u:*:*:*:*:*:*:* core_i3 == None == 5157u
cpe:2.3:h:intel:core_i3:6100u:*:*:*:*:*:*:* core_i3 == None == 6100u
cpe:2.3:h:intel:core_i3:6102e:*:*:*:*:*:*:* core_i3 == None == 6102e
cpe:2.3:h:intel:core_i3:8350k:*:*:*:*:*:*:* core_i3 == None == 8350k
cpe:2.3:h:intel:core_i3:380m:*:*:*:*:*:*:* core_i3 == None == 380m
cpe:2.3:h:intel:core_i3:380um:*:*:*:*:*:*:* core_i3 == None == 380um
cpe:2.3:h:intel:core_i3:2100t:*:*:*:*:*:*:* core_i3 == None == 2100t
cpe:2.3:h:intel:core_i3:2102:*:*:*:*:*:*:* core_i3 == None == 2102
cpe:2.3:h:intel:core_i3:2310e:*:*:*:*:*:*:* core_i3 == None == 2310e
cpe:2.3:h:intel:core_i3:2310m:*:*:*:*:*:*:* core_i3 == None == 2310m
cpe:2.3:h:intel:core_i3:2357m:*:*:*:*:*:*:* core_i3 == None == 2357m
cpe:2.3:h:intel:core_i3:2365m:*:*:*:*:*:*:* core_i3 == None == 2365m
cpe:2.3:h:intel:core_i3:3120m:*:*:*:*:*:*:* core_i3 == None == 3120m
cpe:2.3:h:intel:core_i3:3120me:*:*:*:*:*:*:* core_i3 == None == 3120me
cpe:2.3:h:intel:core_i3:3225:*:*:*:*:*:*:* core_i3 == None == 3225
cpe:2.3:h:intel:core_i3:3227u:*:*:*:*:*:*:* core_i3 == None == 3227u
cpe:2.3:h:intel:core_i3:4005u:*:*:*:*:*:*:* core_i3 == None == 4005u
cpe:2.3:h:intel:core_i3:4010u:*:*:*:*:*:*:* core_i3 == None == 4010u
cpe:2.3:h:intel:core_i3:4100e:*:*:*:*:*:*:* core_i3 == None == 4100e
cpe:2.3:h:intel:core_i3:4100m:*:*:*:*:*:*:* core_i3 == None == 4100m
cpe:2.3:h:intel:core_i3:4130:*:*:*:*:*:*:* core_i3 == None == 4130
cpe:2.3:h:intel:core_i3:4130t:*:*:*:*:*:*:* core_i3 == None == 4130t
cpe:2.3:h:intel:core_i3:4330:*:*:*:*:*:*:* core_i3 == None == 4330
cpe:2.3:h:intel:core_i3:4330t:*:*:*:*:*:*:* core_i3 == None == 4330t
cpe:2.3:h:intel:core_i3:4360t:*:*:*:*:*:*:* core_i3 == None == 4360t
cpe:2.3:h:intel:core_i3:4370:*:*:*:*:*:*:* core_i3 == None == 4370
cpe:2.3:h:intel:core_i3:6006u:*:*:*:*:*:*:* core_i3 == None == 6006u
cpe:2.3:h:intel:core_i3:6098p:*:*:*:*:*:*:* core_i3 == None == 6098p
cpe:2.3:h:intel:core_i3:6100:*:*:*:*:*:*:* core_i3 == None == 6100
cpe:2.3:h:intel:core_i3:6157u:*:*:*:*:*:*:* core_i3 == None == 6157u
cpe:2.3:h:intel:core_i3:6167u:*:*:*:*:*:*:* core_i3 == None == 6167u

Vulnerable and fixed packages

Source package Branch Version Maintainer Status