CVE-2018-9056: Infoleak
Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local user access via a side-channel attack on the directional branch predictor, as demonstrated by a pattern history table (PHT), aka BranchScope.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-9056?
CVE-2018-9056 has been assigned a high severity score due to the potential for unauthorized information disclosure via local user access.
How do I fix CVE-2018-9056?
To mitigate CVE-2018-9056, ensure that your systems are up to date with the latest security patches provided by your hardware vendor.
What types of systems are affected by CVE-2018-9056?
CVE-2018-9056 affects Intel microprocessors that utilize speculative execution, particularly certain models in the Atom and Xeon families.
Can CVE-2018-9056 be exploited remotely?
No, the exploitation of CVE-2018-9056 requires local user access, making it less likely to be a remote attack vector.
Is there a known public exploit for CVE-2018-9056?
Currently, there are no publicly known exploits for CVE-2018-9056, but it is advisable to monitor for potential developments regarding this vulnerability.