cbcvebase.
CVE-2017-5753
published 2018-01-04

CVE-2017-5753: Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local…

PriorityP264medium5.6CVSS 3.1
AVLACHPRLUINSCCHINAN
EXPLOIT
EPSS
93.84%
99.8th percentile
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

Affected

931 ranges· showing 25
VendorProductVersion rangeFixed in
appleios
applemacos_high_sierra_10.13.2_supplemental_update
applesafari
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debianlinux< linux 4.15.11-1 (bookworm)linux 4.15.11-1 (bookworm)
debiannvidia-graphics-drivers< linux 4.15.11-1 (bookworm)linux 4.15.11-1 (bookworm)
debiannvidia-graphics-drivers-legacy-340xx< linux 4.15.11-1 (bookworm)linux 4.15.11-1 (bookworm)
intelatom_c
intelatom_c
intelatom_c
intelatom_c
intelatom_c
intelatom_c
intelatom_c
intelatom_c
intelatom_c
intelatom_c
intelatom_c
intelatom_c

Detection & IOCsextracted from sources · hover to see the quote

  • Spectre variant 1 (CVE-2017-5753) exploits speculative execution and branch prediction to leak data from other processes; detection should focus on side-channel timing anomalies in user-space processes attempting to read cross-process or kernel memory
  • Monitor for processes attempting to access memory contents of other processes, including kernel memory, as an indicator of Spectre exploitation attempts
  • ·Intel firmware updates for Broadwell and Haswell CPUs were pulled due to causing unexpected reboots and data loss/corruption; deploying these specific microcode patches may destabilize systems
  • ·Qualys virtual scanner appliances can be indirectly affected by Spectre/Meltdown if the vulnerability is exploitable at the hypervisor level; underlying hypervisors must be patched separately

CVSS provenance

nvdv3.15.6MEDIUMCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
nvdv2.04.7MEDIUMAV:L/AC:M/Au:N/C:C/I:N/A:N
osv5.6MEDIUM
vendor_cisco5.6MEDIUM
vendor_debian5.6MEDIUM
vendor_redhat5.6MEDIUM
vendor_ubuntu5.6MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.