UBUNTU-CVE-2024-36357
Dashboard / Vulnerabilities / UBUNTU-CVE-2024-36357
UBUNTU-CVE-2024-36357
Summary:
Details: A transient execution vulnerability in some AMD processors may allow an attacker to infer data in the L1D cache, potentially resulting in the leakage of sensitive information across privileged boundaries.
References: https://ubuntu.com/security/CVE-2024-36357, https://www.cve.org/CVERecord?id=CVE-2024-36357, https://xenbits.xen.org/xsa/advisory-471.html, https://www.amd.com/content/dam/amd/en/documents/resources/bulletin/technical-guidance-for-mitigating-transient-scheduler-attacks.pdf, https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7029.html, https://aka.ms/enter-exit-leak, https://www.microsoft.com/en-us/research/wp-content/uploads/2025/07/Enter-Exit-SP26.pdf, https://gitlab.com/kernel-firmware/linux-firmware/-/commit/99d64b4f788c16e81b6550ef94f43c6b91cfad2d, https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=6e9128ff9d8113ef208e5ec82573b96ead100072, https://ubuntu.com/security/notices/USN-7833-1, https://ubuntu.com/security/notices/USN-7834-1, https://ubuntu.com/security/notices/USN-7833-2, https://ubuntu.com/security/notices/USN-7833-3, https://ubuntu.com/security/notices/USN-7848-1, https://ubuntu.com/security/notices/USN-7833-4, https://ubuntu.com/security/notices/USN-7856-1, https://ubuntu.com/security/notices/USN-8028-1, https://ubuntu.com/security/notices/USN-8028-2, https://ubuntu.com/security/notices/USN-8031-1, https://ubuntu.com/security/notices/USN-8028-3, https://ubuntu.com/security/notices/USN-8028-4, https://ubuntu.com/security/notices/USN-8028-5, https://ubuntu.com/security/notices/USN-8031-2, https://ubuntu.com/security/notices/USN-8028-6, https://ubuntu.com/security/notices/USN-8031-3, https://ubuntu.com/security/notices/USN-8052-1, https://ubuntu.com/security/notices/USN-8028-7, https://ubuntu.com/security/notices/USN-8028-8, https://ubuntu.com/security/notices/USN-8052-2, https://ubuntu.com/security/notices/USN-8074-1, https://ubuntu.com/security/notices/USN-8074-2, https://ubuntu.com/security/notices/USN-8126-1, https://ubuntu.com/security/notices/USN-8475-1
Affected packages
Package
Name: amd64-microcode
Purl: pkg:deb/ubuntu/amd64-microcode?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
