cbcvebase.
CVE-2017-5715
published 2018-01-04

CVE-2017-5715: Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker…

PriorityP262medium5.6CVSS 3.1
AVLACHPRLUINSCCHINAN
EXPLOIT
EPSS
74.04%
99.4th percentile
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

Affected

939 ranges· showing 25
VendorProductVersion rangeFixed in
appleios
applemacos_high_sierra_10.13.2_supplemental_update
applesafari
armcortex-a
armcortex-a
armcortex-a
armcortex-a
armcortex-a
armcortex-a
armcortex-a
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debianamd64-microcode< amd64-microcode 3.20180515.1 (bookworm)amd64-microcode 3.20180515.1 (bookworm)
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianintel-microcode< amd64-microcode 3.20180515.1 (bookworm)amd64-microcode 3.20180515.1 (bookworm)
debianlinux< linux 5.16.12-1 (bookworm)linux 5.16.12-1 (bookworm)
debianlinux< amd64-microcode 3.20180515.1 (bookworm)amd64-microcode 3.20180515.1 (bookworm)
debiannvidia-graphics-drivers< amd64-microcode 3.20180515.1 (bookworm)amd64-microcode 3.20180515.1 (bookworm)
debiannvidia-graphics-drivers-legacy-340xx< amd64-microcode 3.20180515.1 (bookworm)amd64-microcode 3.20180515.1 (bookworm)

Detection & IOCsextracted from sources · hover to see the quote

  • ·As of early 2018, there was no known weaponized exploit in the wild for CVE-2017-5715; observed samples were PoC-derived and unconfirmed as functional exploits.
  • ·Intel's initial Broadwell and Haswell microcode patches for CVE-2017-5715 were pulled due to causing unexpected reboots and potential data loss/corruption; deploying those versions may destabilize systems.
  • ·Virtual scanner appliances can still be indirectly affected by CVE-2017-5715 if the vulnerability is exploitable at the hypervisor level; hypervisor patching is required in addition to guest OS patching.

CVSS provenance

nvdv3.15.6MEDIUMCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_cisco5.6MEDIUM
vendor_debian5.6MEDIUM
vendor_redhat5.6MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.