CVE-2017-5926: Infoleak
Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern AMD processors. By performing a side-channel attack on the MMU operations, it is possible to leak data and code pointers from JavaScript, breaking ASLR.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-5926?
CVE-2017-5926 is considered a high severity vulnerability due to its potential to leak sensitive data and code pointers.
How do I fix CVE-2017-5926?
Fixing CVE-2017-5926 may involve applying security patches provided by the hardware vendor or disabling vulnerable processors.
What types of systems are affected by CVE-2017-5926?
CVE-2017-5926 affects various AMD and Intel processors, including models like AMD Athlon II and Intel Core i7.
Can CVE-2017-5926 be exploited remotely?
CVE-2017-5926 requires local access to the affected system to perform the side-channel attack.
What are the implications of CVE-2017-5926 for users?
The implications of CVE-2017-5926 include potential exposure of sensitive information such as passwords or cryptographic keys.