CVE-2024-43420 — Exposure of Sensitive Information caused by Shared Microarchitectural Predictor State that Influences Transient Execution in Intel-microcode
Severity
5.7MEDIUMNVD
EPSS
0.1%
top 73.39%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 13
Latest updateMay 27
Description
Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel Atom(R) processors may allow an authenticated user to potentially enable information disclosure via local access.
CVSS vector
CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Affected Packages1 packages
🔴Vulnerability Details
3OSV▶
CVE-2024-43420: Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel Atom(R) proce↗2025-05-13
GHSA▶
GHSA-6gp3-r6r7-wq4f: Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel Atom(R) proce↗2025-05-13