UBUNTU-CVE-2018-3639
Dashboard / Vulnerabilities / UBUNTU-CVE-2018-3639
UBUNTU-CVE-2018-3639
Summary:
Details: Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB), Variant 4.
References: https://ubuntu.com/security/CVE-2018-3639, https://bugs.chromium.org/p/project-zero/issues/detail?id=1528, https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00115.html, http://xenbits.xen.org/xsa/advisory-263.html, https://ubuntu.com/security/notices/USN-3652-1, https://ubuntu.com/security/notices/USN-3653-1, https://ubuntu.com/security/notices/USN-3653-2, https://ubuntu.com/security/notices/USN-3654-1, https://ubuntu.com/security/notices/USN-3654-2, https://ubuntu.com/security/notices/USN-3655-1, https://ubuntu.com/security/notices/USN-3655-2, https://ubuntu.com/security/notices/USN-3651-1, https://ubuntu.com/security/notices/USN-3680-1, https://ubuntu.com/security/notices/USN-3679-1, https://ubuntu.com/security/notices/USN-3756-1, https://ubuntu.com/security/notices/USN-3777-3, https://www.cve.org/CVERecord?id=CVE-2018-3639
Affected packages
Package
Name: intel-microcode
Purl: pkg:deb/ubuntu/intel-microcode?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
