VYPR

rpm package

opensuse/spectre-meltdown-checker&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/spectre-meltdown-checker&distro=openSUSE%20Tumbleweed

Vulnerabilities (31)

  • CVE-2021-26318MedOct 13, 2021
    affected < 26.36.0602723-1.1fixed 26.36.0602723-1.1

    A timing and power-based side channel attack leveraging the x86 PREFETCH instructions on some AMD CPUs could potentially result in leaked kernel address space information.

  • CVE-2020-8694MedNov 12, 2020
    affected < 26.36.0602723-1.1fixed 26.36.0602723-1.1

    Insufficient access control in the Linux kernel driver for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2020-0543MedJun 15, 2020
    affected < 26.36.0602723-1.1fixed 26.36.0602723-1.1

    Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2019-11157MedDec 16, 2019
    affected < 26.36.0602723-1.1fixed 26.36.0602723-1.1

    Improper conditions check in voltage settings for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege and/or information disclosure via local access.

  • CVE-2018-12207MedNov 14, 2019
    affected < 0.44-1.2fixed 0.44-1.2

    Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of service of the host system via local access.

  • CVE-2019-11135MedNov 14, 2019
    affected < 0.44-1.2fixed 0.44-1.2

    TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.

  • CVE-2018-3620MedAug 14, 2018
    affected < 26.36.0602723-1.1fixed 26.36.0602723-1.1

    Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.

  • CVE-2018-3615HigAug 14, 2018
    affected < 26.36.0602723-1.1fixed 26.36.0602723-1.1

    Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.

  • CVE-2018-3640MedMay 22, 2018
    affected < 26.36.0602723-1.1fixed 26.36.0602723-1.1

    Systems with microprocessors utilizing speculative execution and that perform speculative reads of system registers may allow unauthorized disclosure of system parameters to an attacker with local user access via a side-channel analysis, aka Rogue System Register Read (RSRE), Var

  • CVE-2017-5753MedJan 4, 2018
    affected < 26.36.0602723-1.1fixed 26.36.0602723-1.1

    Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

  • CVE-2017-5715MedJan 4, 2018
    affected < 26.36.0602723-1.1fixed 26.36.0602723-1.1

    Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

Page 2 of 2