CVE-2018-3620: Medium severity Intel Core I3 vulnerability
Last updated 4 July 2026
Other sources
Modern operating systems implement virtualization of physical memory to efficiently use available system resources and provide inter-domain protection through access control and isolation.
The L1TF issue was found in the way the x86 microprocessor designs have implemented speculative execution of instructions (a commonly used performance optimisation) in combination with handling of page-faults caused by terminated virtual to physical address resolving process.
As a result, an unprivileged attacker could use this flaw to read privileged memory of the kernel or other processes and/or cross guest/host boundaries to read host memory by conducting targeted cache side-channel attacks.
CVE-2018-3620: for attack vector against the operating system (Kernel) CVE-2018-3646: for attack vector against virtualization hypervisor (KVM)
Upstream patches: ----------------- -> https://git.kernel.org/linus/958f338e96f874a0d29442396d6adf9c1e17aa2d
— Red Hat
Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/intel-microcodeto a version that resolves this vulnerability.Fixed in 3.20240813.1~deb11u1Fixed in 3.20250812.1~deb11u1Fixed in 3.20251111.1~deb12u1Fixed in 3.20250812.1~deb12u1Fixed in 3.20251111.1~deb13u1Fixed in 3.20250812.1~deb13u1Fixed in 3.20260227.1 - Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.262-1Fixed in 6.1.176-1Fixed in 6.1.180-1Fixed in 6.12.94-1Fixed in 6.12.100-1Fixed in 7.1.3-1Fixed in 7.1.6-1 - Upgrade
Upgrade
debian/xento a version that resolves this vulnerability.Fixed in 4.14.6-1Fixed in 4.14.5+94-ge49571868d-1Fixed in 4.17.5+72-g01140da4e8-1Fixed in 4.20.2+37-g61ff35323e-0+deb13u1Fixed in 4.20.2+7-g1badcf5035-0+deb13u1Fixed in 4.20.3+127-gc42374a105-1
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID is CVE-2018-3620.
What systems are affected by CVE-2018-3620?
Systems with microprocessors utilizing speculative execution and address translations may be affected.
How does CVE-2018-3620 allow unauthorized disclosure of information?
CVE-2018-3620 allows unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.
What is the severity of CVE-2018-3620?
The severity of CVE-2018-3620 is high.
How can I fix CVE-2018-3620?
To fix CVE-2018-3620, update your system's Linux kernel to version 4.19~ or 4.15.0-32.35 or apply the appropriate remedy provided by your Linux distribution.