National Vulnerability Database

National Vulnerability Database

National Vulnerability
Database

CVE-2018-3693 Detail

Current Description

Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a speculative buffer overflow and side-channel analysis.

Source:  MITRE
View Analysis Description

Impact

CVSS v3.0 Severity and Metrics:

Base Score: 5.6 MEDIUM
Vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N (V3 legend)
Impact Score: 4.0
Exploitability Score: 1.1


Attack Vector (AV): Local
Attack Complexity (AC): High
Privileges Required (PR): Low
User Interaction (UI): None
Scope (S): Changed
Confidentiality (C): High
Integrity (I): None
Availability (A): None

CVSS v2.0 Severity and Metrics:

Base Score: 4.7 MEDIUM
Vector: (AV:L/AC:M/Au:N/C:C/I:N/A:N) (V2 legend)
Impact Subscore: 6.9
Exploitability Subscore: 3.4


Access Vector (AV): Local
Access Complexity (AC): Medium
Authentication (AU): None
Confidentiality (C): Complete
Integrity (I): None
Availability (A): None
Additional Information:
Allows unauthorized disclosure of information

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to nvd@nist.gov.

Hyperlink Resource
https://01.org/security/advisories/intel-oss-10002 Vendor Advisory
https://access.redhat.com/errata/RHSA-2018:2384 Third Party Advisory
https://access.redhat.com/errata/RHSA-2018:2390 Third Party Advisory
https://access.redhat.com/errata/RHSA-2018:2395 Third Party Advisory
https://access.redhat.com/errata/RHSA-2019:1946
https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0 Third Party Advisory
https://security.netapp.com/advisory/ntap-20180823-0001/ Third Party Advisory
https://thehackernews.com/2018/07/intel-spectre-vulnerability.html Third Party Advisory
https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html Patch Third Party Advisory
https://www.suse.com/support/kb/doc/?id=7023075 Third Party Advisory

Technical Details

Vulnerability Type (View All)

Known Affected Software Configurations Switch to CPE 2.3

Configuration 1 ( hide )
 cpe:/h:intel:atom_c:c2308
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2316
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2338
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2350
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2358
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2508
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2516
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2518
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2530
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2538
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2550
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2558
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2718
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2730
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2738
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2750
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c2758
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3308
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3338
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3508
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3538
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3558
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3708
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3750
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3758
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3808
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3830
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3850
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3858
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3950
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3955
     Show Matching CPE(s)
 cpe:/h:intel:atom_c:c3958
     Show Matching CPE(s)

Configuration 2 ( hide )
 cpe:/h:intel:atom_e:e3805
     Show Matching CPE(s)
 cpe:/h:intel:atom_e:e3815
     Show Matching CPE(s)
 cpe:/h:intel:atom_e:e3825
     Show Matching CPE(s)
 cpe:/h:intel:atom_e:e3826
     Show Matching CPE(s)
 cpe:/h:intel:atom_e:e3827
     Show Matching CPE(s)
 cpe:/h:intel:atom_e:e3845
     Show Matching CPE(s)

Configuration 3 ( hide )
 cpe:/h:intel:atom_x3:c3130
     Show Matching CPE(s)
 cpe:/h:intel:atom_x3:c3200rk
     Show Matching CPE(s)
 cpe:/h:intel:atom_x3:c3205rk
     Show Matching CPE(s)
 cpe:/h:intel:atom_x3:c3230rk
     Show Matching CPE(s)
 cpe:/h:intel:atom_x3:c3235rk
     Show Matching CPE(s)
 cpe:/h:intel:atom_x3:c3265rk
     Show Matching CPE(s)
 cpe:/h:intel:atom_x3:c3295rk
     Show Matching CPE(s)
 cpe:/h:intel:atom_x3:c3405
     Show Matching CPE(s)
 cpe:/h:intel:atom_x3:c3445
     Show Matching CPE(s)

Configuration 4 ( hide )
 cpe:/h:intel:atom_z:z2420
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z2460
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z2480
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z2520
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z2560
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z2580
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z2760
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3460
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3480
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3530
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3560
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3570
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3580
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3590
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3735d
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3735e
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3735f
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3735g
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3736f
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3736g
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3740
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3740d
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3745
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3745d
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3770
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3770d
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3775
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3775d
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3785
     Show Matching CPE(s)
 cpe:/h:intel:atom_z:z3795
     Show Matching CPE(s)

Configuration 5 ( hide )
 cpe:/h:intel:celeron_j:j1750
     Show Matching CPE(s)
 cpe:/h:intel:celeron_j:j1800
     Show Matching CPE(s)
 cpe:/h:intel:celeron_j:j1850
     Show Matching CPE(s)
 cpe:/h:intel:celeron_j:j1900
     Show Matching CPE(s)
 cpe:/h:intel:celeron_j:j3060
     Show Matching CPE(s)
 cpe:/h:intel:celeron_j:j3160
     Show Matching CPE(s)
 cpe:/h:intel:celeron_j:j3355
     Show Matching CPE(s)
 cpe:/h:intel:celeron_j:j3455
     Show Matching CPE(s)
 cpe:/h:intel:celeron_j:j4005
     Show Matching CPE(s)
 cpe:/h:intel:celeron_j:j4105
     Show Matching CPE(s)

Configuration 6 ( hide )
 cpe:/h:intel:celeron_n:n2805
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2806
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2807
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2808
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2810
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2815
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2820
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2830
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2840
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2910
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2920
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2930
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n2940
     Show Matching CPE(s)
 cpe:/h:intel:celeron_n:n3000
     Show Matching CPE(s)

Configuration 7 ( hide )

Configuration 8 ( hide )

Configuration 9 ( hide )

Configuration 10 ( hide )

Configuration 11 ( hide )

Configuration 12 ( hide )

Configuration 13 ( hide )

Configuration 14 ( hide )

Configuration 15 ( hide )

Configuration 16 ( hide )

Configuration 17 ( hide )

Configuration 18 ( hide )

Configuration 19 ( hide )

Configuration 20 ( hide )

Configuration 21 ( hide )

Configuration 22 ( hide )

Configuration 23 ( hide )

Configuration 24 ( hide )

Configuration 25 ( hide )

Configuration 26 ( hide )

Configuration 27 ( hide )

Configuration 28 ( hide )

Configuration 29 ( hide )

Showing 100 of 1086 CPEs, view all CPEs here.

Change History

7 change records found - show changes

Quick Info

CVE Dictionary Entry:
CVE-2018-3693
NVD Published Date:
07/10/2018
NVD Last Modified:
07/30/2019