CVE-2018-9056
published 2018-03-27CVE-2018-9056: Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local user access via a…
PriorityP423medium5.6CVSS 3.0
AVLACHPRLUINSCCHINAN
EPSS
0.70%
48.7th percentile
Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local user access via a side-channel attack on the directional branch predictor, as demonstrated by a pattern history table (PHT), aka BranchScope.
Affected
880 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| arm | cortex-a | — | — |
| arm | cortex-a | — | — |
| arm | cortex-a | — | — |
| arm | cortex-a | — | — |
| arm | cortex-a | — | — |
| arm | cortex-a | — | — |
| arm | cortex-a | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
| intel | atom_c | — | — |
CVSS provenance
nvdv3.05.6MEDIUMCVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
nvdv2.04.7MEDIUMAV:L/AC:M/Au:N/C:C/I:N/A:N
vendor_redhat5.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-p3vf-w52m-259m: Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local user access vi
ghsa_unreviewed·2022-05-13
CVE-2018-9056 [MEDIUM] CWE-200 GHSA-p3vf-w52m-259m: Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local user access vi
Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local user access via a side-channel attack on the directional branch predictor, as demonstrated by a pattern history table (PHT), aka BranchScope.
Red Hat
hw: cpu: speculative execution branch predictor side-channel attack
vendor_redhat·2018-03-28·CVSS 5.6
CVE-2018-9056 [MEDIUM] CWE-226 hw: cpu: speculative execution branch predictor side-channel attack
hw: cpu: speculative execution branch predictor side-channel attack
Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local user access via a side-channel attack on the directional branch predictor, as demonstrated by a pattern history table (PHT), aka BranchScope.
BranchScope is a new class of attack which leverages functioning of the Branch Prediction Unit (BPU) of a processor to infer/leak sensitive process information, which is involved in the branch decision making (if (x) { x ^ y; } else {x & y;}). In this, BranchScope side-channel could help to infer 'x', by observing prediction patterns of the Branch Prediction Unit (BPU).
Mitigation: This is a hardware processor issue, not a Linux kernel flaw. The f
No detection rules found.
No public exploits indexed.
http://www.cs.ucr.edu/~nael/pubs/asplos18.pdfhttps://arstechnica.com/gadgets/2018/03/its-not-just-spectre-researchers-reveal-more-branch-prediction-attacks/http://www.cs.ucr.edu/~nael/pubs/asplos18.pdfhttps://arstechnica.com/gadgets/2018/03/its-not-just-spectre-researchers-reveal-more-branch-prediction-attacks/
2018-03-27
Published