CVE-2020-0543
published 2020-06-15CVE-2020-0543: Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information…
PriorityP422medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.54%
41.8th percentile
Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Affected
36 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | intel-microcode | < intel-microcode 3.20200609.1 (bookworm) | intel-microcode 3.20200609.1 (bookworm) |
| debian | linux | < intel-microcode 3.20200609.1 (bookworm) | intel-microcode 3.20200609.1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| linux | linux_kernel | >= 0 < 5.6.14-2 | 5.6.14-2 |
| linux | linux_kernel | >= 0 < 5.6.14-2 | 5.6.14-2 |
| linux | linux_kernel | >= 0 < 5.6.14-2 | 5.6.14-2 |
| linux | linux_kernel | >= 0 < 5.6.14-2 | 5.6.14-2 |
| linux | linux_kernel | >= 0 < 4.4.0-184.214 | 4.4.0-184.214 |
| linux | linux_kernel | >= 0 < 4.15.0-106.107 | 4.15.0-106.107 |
| linux | linux_kernel | >= 0 < 5.4.0-37.41 | 5.4.0-37.41 |
| linux | linux_kernel | >= 0 < 3.13.0-180.231 | 3.13.0-180.231 |
| mcafee | threat_intelligence_exchange_server | — | — |
| mcafee | threat_intelligence_exchange_server | 2.0.0 – 2.3.1 | — |
| opensuse | leap | — | — |
| opensuse | leap | — | — |
| siemens | simatic_field_pg_m5_firmware | < 22.01.08 | 22.01.08 |
| siemens | simatic_field_pg_m6_firmware | < 26.01.07 | 26.01.07 |
| siemens | simatic_ipc3000_smart_firmware | < 1.b | 1.b |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv6.5MEDIUM
vendor_ubuntu6.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
xen vulnerabilities
osv·2022-09-19·CVSS 5.5
CVE-2020-0543 [MEDIUM] xen vulnerabilities
xen vulnerabilities
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Julien Grall discovered that Xen incorrectly handled memory barriers on
ARM-based systems. An attacker could possibly use this issue to cause a
denial of service, obtain sensitive information or escalate privileges.
(CVE-2020-11739)
Ilja Van Sprundel discovered that Xen incorrectly handled profiling of
guests. An unprivileged attacker could use this issue to obtain sensitive
information from other guests, cause a denial of s
GHSA
GHSA-8gvr-7c6p-jfwg: Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable in
ghsa_unreviewed·2022-05-24
CVE-2020-0543 [LOW] CWE-200 GHSA-8gvr-7c6p-jfwg: Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable in
Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
OSV
CVE-2020-0543: Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable in
osv·2020-06-15·CVSS 5.5
CVE-2020-0543 [MEDIUM] CVE-2020-0543: Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable in
Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
OSV
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-gcp, linux-gke-4.15, linux-hwe, linux-kvm, linux-oem, linux-oracle, linux-raspi2, linux-snapdragon vulnerabilities
osv·2020-06-11·CVSS 4.4
CVE-2020-0067 [MEDIUM] linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-gcp, linux-gke-4.15, linux-hwe, linux-kvm, linux-oem, linux-oracle, linux-raspi2, linux-snapdragon vulnerabilities
linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-gcp, linux-gke-4.15, linux-hwe, linux-kvm, linux-oem, linux-oracle, linux-raspi2, linux-snapdragon vulnerabilities
It was discovered that the F2FS file system implementation in the Linux
kernel did not properly perform bounds checking on xattrs in some
situations. A local attacker could possibly use this to expose sensitive
information (kernel memory). (CVE-2020-0067)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Piotr K
OSV
linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
osv·2020-06-11·CVSS 6.5
CVE-2019-19319 [MEDIUM] linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
It was discovered that the ext4 file system implementation in the Linux
kernel did not properly handle setxattr operations in some situations. A
local attacker could use this to cause a denial of service (system crash)
or possibly execute arbitrary code. (CVE-2019-19319)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Piotr Krysiuk discovered that race conditions existed in the file system
implementation in the Linux
OSV
intel-microcode regression
osv·2020-06-10·CVSS 5.5
[MEDIUM] intel-microcode regression
intel-microcode regression
USN-4385-1 provided updated Intel Processor Microcode. Unfortunately,
that update prevented certain processors in the Intel Skylake family
(06_4EH) from booting successfully. Additonally, on Ubuntu 20.04
LTS, late loading of microcode was enabled, which could lead to
system instability. This update reverts the microcode update for
the Skylake processor family and disables the late loading option on
Ubuntu 20.04 LTS.
Please note that the 'dis_ucode_ldr' kernel command line option can be
added in the boot menu to disable microcode loading for system recovery.
We apologize for the inconvenience.
Original advisory details:
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read o
OSV
linux, linux-aws, linux-aws-5.3, linux-azure, linux-azure-5.3, linux-gcp, linux-gcp-5.3, linux-gke-5.3, linux-hwe, linux-kvm, linux-oracle, linux-oracle-5.3, linux-raspi2, linux-raspi2-5.3 vulnerabili
osv·2020-06-10·CVSS 4.4
CVE-2020-0067 [MEDIUM] linux, linux-aws, linux-aws-5.3, linux-azure, linux-azure-5.3, linux-gcp, linux-gcp-5.3, linux-gke-5.3, linux-hwe, linux-kvm, linux-oracle, linux-oracle-5.3, linux-raspi2, linux-raspi2-5.3 vulnerabili
linux, linux-aws, linux-aws-5.3, linux-azure, linux-azure-5.3, linux-gcp, linux-gcp-5.3, linux-gke-5.3, linux-hwe, linux-kvm, linux-oracle, linux-oracle-5.3, linux-raspi2, linux-raspi2-5.3 vulnerabilities
It was discovered that the F2FS file system implementation in the Linux
kernel did not properly perform bounds checking on xattrs in some
situations. A local attacker could possibly use this to expose sensitive
information (kernel memory). (CVE-2020-0067)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE
OSV
linux, linux-aws, linux-azure, linux-gcp, linux-kvm, linux-oracle, linux-raspi, linux-riscv vulnerabilities
osv·2020-06-10·CVSS 4.4
CVE-2020-0067 [MEDIUM] linux, linux-aws, linux-azure, linux-gcp, linux-kvm, linux-oracle, linux-raspi, linux-riscv vulnerabilities
linux, linux-aws, linux-azure, linux-gcp, linux-kvm, linux-oracle, linux-raspi, linux-riscv vulnerabilities
It was discovered that the F2FS file system implementation in the Linux
kernel did not properly perform bounds checking on xattrs in some
situations. A local attacker could possibly use this to expose sensitive
information (kernel memory). (CVE-2020-0067)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Piotr Krysiuk discovered that race conditions existed in the file system
implementat
OSV
linux, linux-lts-trusty vulnerabilities
osv·2020-06-10·CVSS 5.5
CVE-2020-12654 [MEDIUM] linux, linux-lts-trusty vulnerabilities
linux, linux-lts-trusty vulnerabilities
It was discovered that the Marvell WiFi-Ex Driver in the Linux kernel did
not properly validate status lengths in messages received from an access
point, leading to a buffer overflow. A physically proximate attacker
controlling an access point could use this to construct messages that could
possibly result in arbitrary code execution. (CVE-2020-12654)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Piotr Krysiuk discovered that race conditions existed
OSV
intel-microcode vulnerabilities
osv·2020-06-09·CVSS 5.5
CVE-2020-0543 [MEDIUM] intel-microcode vulnerabilities
intel-microcode vulnerabilities
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
It was discovered that on some Intel processors, partial data values
previously read from a vector register on a physical core may be propagated
into unused portions of the store buffer. A local attacker could possible
use this to expose sensitive information. (CVE-2020-0548)
It was discovered that on some Intel processors, data from the most
recently evicted modified L1 data cache (L1D) line may be propagated in
OSV
linux-gke-5.0, linux-oem-osp1 vulnerabilities
osv·2020-06-09·CVSS 4.4
CVE-2020-0067 [MEDIUM] linux-gke-5.0, linux-oem-osp1 vulnerabilities
linux-gke-5.0, linux-oem-osp1 vulnerabilities
It was discovered that the F2FS file system implementation in the Linux
kernel did not properly perform bounds checking on xattrs in some
situations. A local attacker could possibly use this to expose sensitive
information (kernel memory). (CVE-2020-0067)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Piotr Krysiuk discovered that race conditions existed in the file system
implementation in the Linux kernel. A local attacker could use this to
ca
Ubuntu
Xen vulnerabilities
vendor_ubuntu·2022-09-19·CVSS 5.5
CVE-2020-25599 [MEDIUM] Xen vulnerabilities
Title: Xen vulnerabilities
Summary: Several security issues were fixed in Xen.
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Julien Grall discovered that Xen incorrectly handled memory barriers on
ARM-based systems. An attacker could possibly use this issue to cause a
denial of service, obtain sensitive information or escalate privileges.
(CVE-2020-11739)
Ilja Van Sprundel discovered that Xen incorrectly handled profiling of
guests. An unprivileged attacker could use this issue to obtain
CISA ICS
Siemens Industrial Products (Update F)
cisa_ics·2021-06-08
Siemens Industrial Products (Update F)
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens Industrial Products (Update F)
Last RevisedMarch 10, 2022
Alert CodeICSA-20-252-07
## 1. EXECUTIVE SUMMARY
- CVSS v3 5.5
- ATTENTION: Low attack complexity
- Vendor: Siemens
- Equipment: Siemens Industrial Products containing certain processors
- Vulnerability: Exposure of Sensitive Information to an Unauthorized Actor
## 2. UPDATE INFORMATION
This updated advisory is a follow-up to the advisory update titled ICSA-20-252-07 Siemens Industrial Products (Update E) that was published June 8, 2021, to the ICS webpage on us-cert.cisa.gov.
## 3. RISK EVALUATION
Success
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2020-06-11·CVSS 6.5
CVE-2019-19319 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that the ext4 file system implementation in the Linux
kernel did not properly handle setxattr operations in some situations. A
local attacker could use this to cause a denial of service (system crash)
or possibly execute arbitrary code. (CVE-2019-19319)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Piotr Krysiuk discovered that race conditions existed in the file system
i
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2020-06-11·CVSS 4.4
CVE-2020-0067 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that the F2FS file system implementation in the Linux
kernel did not properly perform bounds checking on xattrs in some
situations. A local attacker could possibly use this to expose sensitive
information (kernel memory). (CVE-2020-0067)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Piotr Krysiuk discovered that race conditions existed in the file system
implementation in
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2020-06-10·CVSS 5.5
CVE-2020-0543 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that the Marvell WiFi-Ex Driver in the Linux kernel did
not properly validate status lengths in messages received from an access
point, leading to a buffer overflow. A physically proximate attacker
controlling an access point could use this to construct messages that could
possibly result in arbitrary code execution. (CVE-2020-12654)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020
Ubuntu
Intel Microcode regression
vendor_ubuntu·2020-06-10·CVSS 5.5
[MEDIUM] Intel Microcode regression
Title: Intel Microcode regression
Summary: USN-4385-1 introduced a regression in the Intel Microcode for some processors.
USN-4385-1 provided updated Intel Processor Microcode. Unfortunately,
that update prevented certain processors in the Intel Skylake family
(06_4EH) from booting successfully. Additonally, on Ubuntu 20.04
LTS, late loading of microcode was enabled, which could lead to
system instability. This update reverts the microcode update for
the Skylake processor family and disables the late loading option on
Ubuntu 20.04 LTS.
Please note that the 'dis_ucode_ldr' kernel command line option can be
added in the boot menu to disable microcode loading for system recovery.
We apologize for the inconvenience.
Original advisory details:
It was discovered that memory contents previo
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2020-06-10·CVSS 4.4
CVE-2020-0067 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that the F2FS file system implementation in the Linux
kernel did not properly perform bounds checking on xattrs in some
situations. A local attacker could possibly use this to expose sensitive
information (kernel memory). (CVE-2020-0067)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Piotr Krysiuk discovered that race conditions existed in the file system
implementation in
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2020-06-10·CVSS 4.4
CVE-2020-0067 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that the F2FS file system implementation in the Linux
kernel did not properly perform bounds checking on xattrs in some
situations. A local attacker could possibly use this to expose sensitive
information (kernel memory). (CVE-2020-0067)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Piotr Krysiuk discovered that race conditions existed in the file system
implementation in
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2020-06-10·CVSS 5.5
CVE-2020-0543 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that the Marvell WiFi-Ex Driver in the Linux kernel did
not properly validate status lengths in messages received from an access
point, leading to a buffer overflow. A physically proximate attacker
controlling an access point could use this to construct messages that could
possibly result in arbitrary code execution. (CVE-2020-12654)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020
Red Hat
hw: Special Register Buffer Data Sampling (SRBDS)
vendor_redhat·2020-06-09·CVSS 5.5
CVE-2020-0543 [MEDIUM] hw: Special Register Buffer Data Sampling (SRBDS)
hw: Special Register Buffer Data Sampling (SRBDS)
Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
A new domain bypass transient execution attack known as Special Register Buffer Data Sampling (SRBDS) has been found. This flaw allows data values from special internal registers to be leaked by an attacker able to execute code on any core of the CPU. An unprivileged, local attacker can use this flaw to infer values returned by affected instructions known to be commonly used during cryptographic operations that rely on uniqueness, secrecy, or both.
Statement: Red Hat Product Security is aware of this issue. Updates will be released as they become avail
Ubuntu
Kernel Live Patch Security Notice
vendor_ubuntu·2020-06-09·CVSS 4.4
CVE-2020-8649 [MEDIUM] Kernel Live Patch Security Notice
Title: Kernel Live Patch Security Notice
Summary: Several security issues were fixed in the kernel.
It was discovered that the virtual terminal implementation in the Linux
kernel did not properly handle resize events. A local attacker could use
this to expose sensitive information. (CVE-2020-8647)
It was discovered that the virtual terminal implementation in the Linux
kernel contained a race condition. A local attacker could possibly use this
to cause a denial of service (system crash) or expose sensitive
information. (CVE-2020-8648)
It was discovered that the virtual terminal implementation in the Linux
kernel did not properly handle resize events. A local attacker could use
this to expose sensitive information. (CVE-2020-8649)
It was discovered that the Serial CAN interface driver i
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2020-06-09·CVSS 4.4
CVE-2020-0067 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that the F2FS file system implementation in the Linux
kernel did not properly perform bounds checking on xattrs in some
situations. A local attacker could possibly use this to expose sensitive
information (kernel memory). (CVE-2020-0067)
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
Piotr Krysiuk discovered that race conditions existed in the file system
implementation in
Ubuntu
Intel Microcode vulnerabilities
vendor_ubuntu·2020-06-09·CVSS 5.5
CVE-2020-0543 [MEDIUM] Intel Microcode vulnerabilities
Title: Intel Microcode vulnerabilities
Summary: Several security issues were fixed in Intel Microcode.
It was discovered that memory contents previously stored in
microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY
read operations on Intel client and Xeon E3 processors may be briefly
exposed to processes on the same or different processor cores. A local
attacker could use this to expose sensitive information. (CVE-2020-0543)
It was discovered that on some Intel processors, partial data values
previously read from a vector register on a physical core may be propagated
into unused portions of the store buffer. A local attacker could possible
use this to expose sensitive information. (CVE-2020-0548)
It was discovered that on some Intel processors, data from the most
Debian
CVE-2020-0543: intel-microcode - Incomplete cleanup from specific special register read operations in some Intel(...
vendor_debian·2020·CVSS 5.5
CVE-2020-0543 [MEDIUM] CVE-2020-0543: intel-microcode - Incomplete cleanup from specific special register read operations in some Intel(...
Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Scope: local
bookworm: resolved (fixed in 3.20200609.1)
bullseye: resolved (fixed in 3.20200609.1)
forky: resolved (fixed in 3.20200609.1)
sid: resolved (fixed in 3.20200609.1)
trixie: resolved (fixed in 3.20200609.1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-0543 kernel: hw: Special Register Buffer Data Sampling (SRBDS) [fedora-all]
bugzilla·2020-06-09·CVSS 5.5
CVE-2020-0543 [MEDIUM] CVE-2020-0543 kernel: hw: Special Register Buffer Data Sampling (SRBDS) [fedora-all]
CVE-2020-0543 kernel: hw: Special Register Buffer Data Sampling (SRBDS) [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported v
Bugzilla
CVE-2020-0543 microcode_ctl: hw: Special Register Buffer Data Sampling (SRBDS) [fedora-all]
bugzilla·2020-06-09·CVSS 5.5
CVE-2020-0543 [MEDIUM] CVE-2020-0543 microcode_ctl: hw: Special Register Buffer Data Sampling (SRBDS) [fedora-all]
CVE-2020-0543 microcode_ctl: hw: Special Register Buffer Data Sampling (SRBDS) [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supp
Bugzilla
CVE-2020-0543 hw: Special Register Buffer Data Sampling (SRBDS)
bugzilla·2020-04-23·CVSS 5.5
CVE-2020-0543 [MEDIUM] CVE-2020-0543 hw: Special Register Buffer Data Sampling (SRBDS)
CVE-2020-0543 hw: Special Register Buffer Data Sampling (SRBDS)
Certain microprocessor operations (including RDRAND and RDSEED) are implemented using
micro-architecture specific Special Register Reads (SRR). On certain client and E3 processors,
the data returned by these SRR operations may be inferred, even on another core. Cleanup errors
from specific special register read operations may allow an authenticated user to potentially
enable information disclosure via local access.
Discussion:
Mitigation:
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
---
Statement:
Red Hat Product Security is aware of t
http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00025.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-07/msg00024.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-07/msg00031.htmlhttp://www.openwall.com/lists/oss-security/2020/07/14/5https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdfhttps://kc.mcafee.com/corporate/index?page=content&id=SB10318https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DT2VKDMQ3I37NBNJ256A2EXR7OJHXXKZ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GRFC7UAPKAFFH5WX3AMDUBVHLKYQA2NZ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NQZMOSHLTBBIECENNXA6M7DN5FEED4KI/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T5OUM24ZC43G4IDT3JUCIHJTSDXJSK6Y/https://usn.ubuntu.com/4385-1/https://usn.ubuntu.com/4387-1/https://usn.ubuntu.com/4388-1/https://usn.ubuntu.com/4389-1/https://usn.ubuntu.com/4390-1/https://usn.ubuntu.com/4391-1/https://usn.ubuntu.com/4392-1/https://usn.ubuntu.com/4393-1/https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-06/msg00025.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-07/msg00024.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-07/msg00031.htmlhttp://www.openwall.com/lists/oss-security/2020/07/14/5https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdfhttps://kc.mcafee.com/corporate/index?page=content&id=SB10318https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DT2VKDMQ3I37NBNJ256A2EXR7OJHXXKZ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GRFC7UAPKAFFH5WX3AMDUBVHLKYQA2NZ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NQZMOSHLTBBIECENNXA6M7DN5FEED4KI/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T5OUM24ZC43G4IDT3JUCIHJTSDXJSK6Y/https://usn.ubuntu.com/4385-1/https://usn.ubuntu.com/4387-1/https://usn.ubuntu.com/4388-1/https://usn.ubuntu.com/4389-1/https://usn.ubuntu.com/4390-1/https://usn.ubuntu.com/4391-1/https://usn.ubuntu.com/4392-1/https://usn.ubuntu.com/4393-1/https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.html
2020-06-15
Published