Wind River Support Network

HomeDefectsSCP7-824
Fixed

SCP7-824 : Security Advisory - linux - CVE-2018-3640 Rogue System Register Read

Created: May 22, 2018    Updated: Jan 4, 2019
Resolved Date: Jan 1, 2019
Found In Version: 7.0.0.28
Fix Version: 7.0.0.29
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Kernel

Description

Side channel analysis vulnerability which allows an attacker to use
speculative execution to leak some internal CPU state across privilege levels.

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-3640

External References:
https://people.canonical.com/~ubuntu-security/cve/2018/CVE-2018-3640.html
https://access.redhat.com/security/cve/cve-2018-3640
https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00115.html
https://software.intel.com/side-channel-security-support
Live chat
Online