VYPR

CWE-1342

Information Exposure through Microarchitectural State after Transient Execution

BaseIncomplete

Description

The processor does not properly clear microarchitectural state after incorrect microcode assists or speculative execution, resulting in transient execution.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-696

CVEs mapped to this weakness (3)

  • CVE-2026-18796MedSep 7, 2026
    risk 0.44cvss —epss 0.00

    Any application that uses external QSPI flash for encrypted XIP on nRF5340 and relies on that encryption for confidentiality and/or integrity of the externally stored code. No specific nRF Connect SDK version is the root cause; the weakness is in the…

  • CVE-2022-40982MedAug 11, 2023
    risk 0.43cvss 6.5epss 0.03

    Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2023-28746MedMar 14, 2024
    risk 0.42cvss 6.5epss 0.01

    Information exposure through microarchitectural state after transient execution from some register files for some Intel(R) Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.