Kernel Side-Channel Attack using L1 Terminal Fault - CVE-2018-3620 & CVE-2018-3646

Updated -

Red Hat Product Security has been made aware of a vulnerability with a security impact rating of IMPORTANT in all currently support versions of Red Hat Enterprise Linux and other products. The vulnerability exists in modern microprocessors supported by the kernel, whereby an unprivileged attacker can use this flaw to bypass restrictions to gain read access to privileged memory. This issue has been assigned CVE-2018-3620 and CVE-2018-3646. All currently supported versions of Red Hat Enterprise Linux, Red Hat OpenShift, Red Hat Virtualization and Red Hat OpenStack Platform are affected.

Details can be found at the Vulnerability Page.

  • Product
  • Red Hat Enterprise Linux
  • Category
  • Secure
  • Tags
  • kernel
  • Security-Vulnerabilities