CVE-2018-3693

MEDIUM

Intel Atom C/E/X3 - Unauthorized Information Disclosure via Speculative Buffer Overflow

Title source: llm
STIX 2.1

Description

Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a speculative buffer overflow and side-channel analysis.

References (11)

Core 11
Core References
Third Party Advisory vendor-advisory x_refsource_redhat
https://access.redhat.com/errata/RHSA-2018:2390
Third Party Advisory vendor-advisory x_refsource_redhat
https://access.redhat.com/errata/RHSA-2018:2395
Third Party Advisory vendor-advisory x_refsource_redhat
https://access.redhat.com/errata/RHSA-2018:2384
Third Party Advisory vendor-advisory x_refsource_redhat
https://access.redhat.com/errata/RHSA-2019:1946
Third Party Advisory vendor-advisory x_refsource_redhat
https://access.redhat.com/errata/RHSA-2020:0174
Patch, Third Party Advisory x_refsource_misc
https://www.oracle.com/security-alerts/cpujul2020.html
Third Party Advisory x_refsource_confirm
https://security.netapp.com/advisory/ntap-20180823-0001/
Patch, Third Party Advisory x_refsource_misc
https://www.oracle.com/security-alerts/cpuoct2020.html
Third Party Advisory x_refsource_confirm
https://cdrdv2.intel.com/v1/dl/getContent/685359

Scores

CVSS v3 5.6
EPSS 0.0131
EPSS Percentile 80.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N

Details

Status published
Products (50)
arm/cortex-a 8
arm/cortex-a 9
arm/cortex-a 12
arm/cortex-a 15
arm/cortex-a 17
arm/cortex-a 57
arm/cortex-a 72
arm/cortex-a 73
arm/cortex-a 75
arm/cortex-a 76
... and 40 more
Published Jul 10, 2018
Tracked Since Feb 18, 2026