ISOMAN

CVE

CVE-2018-3639

Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB), Variant 4.

Severity
MEDIUM
CVSS
5.5
Published
Modified

Linked Releases

References

  1. http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00058.html
  2. http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00059.html
  3. http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00007.html
  4. http://support.lenovo.com/us/en/solutions/LEN-22133
  5. http://www.fujitsu.com/global/support/products/software/security/products-f/cve-2018-3639e.html
  6. http://www.openwall.com/lists/oss-security/2020/06/10/1
  7. http://www.openwall.com/lists/oss-security/2020/06/10/2
  8. http://www.openwall.com/lists/oss-security/2020/06/10/5
  9. http://www.securityfocus.com/bid/104232
  10. http://www.securitytracker.com/id/1040949
  11. http://www.securitytracker.com/id/1042004
  12. http://xenbits.xen.org/xsa/advisory-263.html
  13. https://access.redhat.com/errata/RHSA-2018:1629
  14. https://access.redhat.com/errata/RHSA-2018:1630
  15. https://access.redhat.com/errata/RHSA-2018:1632
  16. https://access.redhat.com/errata/RHSA-2018:1633
  17. https://access.redhat.com/errata/RHSA-2018:1635
  18. https://access.redhat.com/errata/RHSA-2018:1636
  19. https://access.redhat.com/errata/RHSA-2018:1637
  20. https://access.redhat.com/errata/RHSA-2018:1638