CVE-2018-3639 EXPLOIT
5.5
MEDIUM · CVSS 3.1 · EPSS 60.6% (pctl 99)
Patch early
A public exploit exists.
Description
Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB), Variant 4.
Scoring
| CVSS | 5.5 (MEDIUM, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
| EPSS | 60.63% — more likely to be exploited than 99% of all CVEs |
| Weakness | CWE-203 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2018-05-22 |
| Last modified | 2026-06-17 |
Affected (40)
| Vendor | Product |
|---|---|
| intel | atom c |
| intel | atom e |
| intel | atom x5-e3930 |
| intel | atom x5-e3940 |
| intel | atom x7-e3950 |
| intel | atom z |
| intel | celeron j |
| intel | celeron n |
| intel | core i3 |
| intel | core i5 |
| intel | core i7 |
| intel | core m |
| intel | pentium |
| intel | pentium j |
| intel | pentium silver |
| intel | xeon e-1105c |
| intel | xeon e3 |
| intel | xeon e3 1105c v2 |
| intel | xeon e3 1125c v2 |
| intel | xeon e3 1220 v2 |
| intel | xeon e3 1220 v3 |
| intel | xeon e3 1220 v5 |
| intel | xeon e3 1220 v6 |
| intel | xeon e3 12201 |
| intel | xeon e3 12201 v2 |
| intel | xeon e3 1220l v3 |
| intel | xeon e3 1225 |
| intel | xeon e3 1225 v2 |
| intel | xeon e3 1225 v3 |
| intel | xeon e3 1225 v5 |
| intel | xeon e3 1225 v6 |
| intel | xeon e3 1226 v3 |
| intel | xeon e3 1230 |
| intel | xeon e3 1230 v2 |
| intel | xeon e3 1230 v3 |
| intel | xeon e3 1230 v5 |
| intel | xeon e3 1230 v6 |
| intel | xeon e3 1230l v3 |
| intel | xeon e3 1231 v3 |
| intel | xeon e3 1235 |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | AMD / ARM / Intel - Speculative Execution Variant 4 Speculative Store Bypass | 2018-05-22 |
References
- http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00058.html
- http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00059.html
- http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00007.html
- http://support.lenovo.com/us/en/solutions/LEN-22133
- http://www.fujitsu.com/global/support/products/software/security/products-f/cve-2018-3639e.html
- http://www.openwall.com/lists/oss-security/2020/06/10/1
- http://www.openwall.com/lists/oss-security/2020/06/10/2
- http://www.openwall.com/lists/oss-security/2020/06/10/5
- http://www.securityfocus.com/bid/104232
- http://www.securitytracker.com/id/1040949
- http://www.securitytracker.com/id/1042004
- http://xenbits.xen.org/xsa/advisory-263.html
- https://access.redhat.com/errata/RHSA-2018:1629
- https://access.redhat.com/errata/RHSA-2018:1630
- https://access.redhat.com/errata/RHSA-2018:1632
- https://access.redhat.com/errata/RHSA-2018:1633
- https://access.redhat.com/errata/RHSA-2018:1635
- https://access.redhat.com/errata/RHSA-2018:1636
- https://access.redhat.com/errata/RHSA-2018:1637
- https://access.redhat.com/errata/RHSA-2018:1638
→ the Explorer · watch your stack · NVD