CVE-2018-3691: Medium severity intel integrated performance primitives vulnerability
Some implementations in Intel Integrated Performance Primitives Cryptography Library before version 2018 U3.1 do not properly ensure constant execution time.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-3691?
CVE-2018-3691 is a vulnerability in Intel Integrated Performance Primitives Cryptography Library that allows for improper execution time.
What is the severity of CVE-2018-3691?
The severity of CVE-2018-3691 is medium with a CVSS score of 4.7.
How does CVE-2018-3691 affect Intel Integrated Performance Primitives Cryptography Library?
CVE-2018-3691 affects versions of Intel Integrated Performance Primitives Cryptography Library before version 2018 U3.1.
How can I fix CVE-2018-3691?
To fix CVE-2018-3691, update Intel Integrated Performance Primitives Cryptography Library to version 2018 U3.1 or later.
Where can I find more information about CVE-2018-3691?
You can find more information about CVE-2018-3691 in the Intel Security Center Advisory at https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00106.html.