Vulnerability Description
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Atom C | c2308 |
| Intel | Atom E | e3805 |
| Intel | Atom X3 | c3130 |
| Intel | Atom X5-E3930 | - |
| Intel | Atom X5-E3940 | - |
| Intel | Atom X7-E3950 | - |
| Intel | Atom Z | z2420 |
| Intel | Celeron J | j1750 |
| Intel | Celeron N | n2805 |
| Intel | Core I3 | 330e |
| Intel | Core I5 | 430m |
| Intel | Core I7 | 7y75 |
| Intel | Core M | 5y10 |
| Intel | Core M3 | 6y30 |
| Intel | Core M5 | 6y54 |
| Intel | Core M7 | 6y75 |
| Intel | Pentium J | j2850 |
| Intel | Pentium N | n3510 |
| Intel | Xeon | e5502 |
| Intel | Xeon Bronze 3104 | - |
Related Weaknesses (CWE)
References
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00002.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00003.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00004.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00005.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00006.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00007.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00008.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00009.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00012.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00013.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00014.htmlBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2018-01/msg00016.htmlBroken Link
- http://nvidia.custhelp.com/app/answers/detail/a_id/4609Third Party Advisory
- http://nvidia.custhelp.com/app/answers/detail/a_id/4611Third Party Advisory
- http://nvidia.custhelp.com/app/answers/detail/a_id/4613Third Party Advisory
FAQ
What is CVE-2017-5715?
CVE-2017-5715 is a vulnerability with a CVSS score of 5.6 (MEDIUM). Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel an...
How severe is CVE-2017-5715?
CVE-2017-5715 has been rated MEDIUM with a CVSS base score of 5.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-5715?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Atom C, Intel Atom E, Intel Atom X3, Intel Atom X5-E3930, Intel Atom X5-E3940.