Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-5753

Опубликовано: 04 янв. 2018
Источник: debian
EPSS Критический

Описание

Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.15.11-1package
nvidia-graphics-driversfixed384.111-1package
nvidia-graphics-driversfixed384.111-4~deb9u1stretchpackage
nvidia-graphics-driversfixed340.106-1jessiepackage
nvidia-graphics-driversend-of-lifewheezypackage
nvidia-graphics-drivers-legacy-340xxfixed340.106-1package
nvidia-graphics-drivers-legacy-340xxfixed340.106-1~deb9u1stretchpackage
nvidia-graphics-drivers-legacy-304xxunfixedpackage
nvidia-graphics-drivers-legacy-304xxno-dsastretchpackage
nvidia-graphics-drivers-legacy-304xxno-dsajessiepackage
linux-grsecremovedpackage

Примечания

  • https://spectreattack.com/

  • https://xenbits.xen.org/xsa/advisory-254.html

  • https://googleprojectzero.blogspot.co.uk/2018/01/reading-privileged-memory-with-side.html

  • Paper: https://spectreattack.com/spectre.pdf

  • https://01.org/security/advisories/intel-oss-10002

EPSS

Процентиль: 100%
0.94332
Критический

Связанные уязвимости

CVSS3: 5.6
ubuntu
больше 7 лет назад

Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

CVSS3: 5.5
redhat
больше 7 лет назад

Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

CVSS3: 5.6
nvd
больше 7 лет назад

Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

suse-cvrf
почти 4 года назад

Security update for spectre-meltdown-checker

suse-cvrf
почти 4 года назад

Security update for spectre-meltdown-checker

EPSS

Процентиль: 100%
0.94332
Критический