Simultaneous Multi-threading (SMT) in processors can enable local users to exploit software vulnerable to timing attacks via a side-channel timing attack on 'port contention'.
References
Link Resource
http://www.securityfocus.com/bid/105897 Third Party Advisory VDB Entry
https://access.redhat.com/errata/RHSA-2019:0483 Third Party Advisory
https://access.redhat.com/errata/RHSA-2019:0651 Third Party Advisory
https://access.redhat.com/errata/RHSA-2019:0652 Third Party Advisory
https://access.redhat.com/errata/RHSA-2019:2125 Third Party Advisory
https://access.redhat.com/errata/RHSA-2019:3929 Third Party Advisory
https://access.redhat.com/errata/RHSA-2019:3931 Third Party Advisory
https://access.redhat.com/errata/RHSA-2019:3932 Third Party Advisory
https://access.redhat.com/errata/RHSA-2019:3933 Third Party Advisory
https://access.redhat.com/errata/RHSA-2019:3935 Third Party Advisory
https://eprint.iacr.org/2018/1060.pdf Technical Description Third Party Advisory
https://github.com/bbbrumley/portsmash Exploit Third Party Advisory
https://lists.debian.org/debian-lts-announce/2018/11/msg00024.html Mailing List Third Party Advisory
https://nodejs.org/en/blog/vulnerability/november-2018-security-releases/ Third Party Advisory
https://security.gentoo.org/glsa/201903-10 Third Party Advisory
https://security.netapp.com/advisory/ntap-20181126-0001/ Third Party Advisory
https://support.f5.com/csp/article/K49711130?utm_source=f5support&amp%3Butm_medium=RSS
https://usn.ubuntu.com/3840-1/ Third Party Advisory
https://www.debian.org/security/2018/dsa-4348 Third Party Advisory
https://www.debian.org/security/2018/dsa-4355 Third Party Advisory
https://www.exploit-db.com/exploits/45785/ Exploit Third Party Advisory VDB Entry
https://www.oracle.com/security-alerts/cpuapr2020.html Patch Third Party Advisory
https://www.oracle.com/security-alerts/cpujan2020.html Patch Third Party Advisory
https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html Patch Third Party Advisory
https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html Patch Vendor Advisory
https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html Patch Third Party Advisory
https://www.tenable.com/security/tns-2018-16 Third Party Advisory
https://www.tenable.com/security/tns-2018-17 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: certcc

Published: 2018-11-15T21:00:00

Updated: 2020-04-15T21:06:46

Reserved: 2018-01-12T00:00:00


Link: CVE-2018-5407

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2018-11-15T21:29:00.233

Modified: 2023-11-07T02:58:42.920


Link: CVE-2018-5407

JSON object: View

cve-icon Redhat Information

No data.