Ask the Community
Groups
CVE-2018-3615 kernel: L1 Terminal Fault: SGX - Connect IT Community | Kaseya
<main> <article class="userContent"> <h3 data-id="cve-id"><strong>CVE ID</strong></h3> <p>CVE-2018-3615</p> <h3 data-id="description"><strong>DESCRIPTION</strong></h3> <p><br>Systems with microprocessors utilizing speculative execution and Intel® software guard extensions (Intel® SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.<br><br>7.9 High CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N</p> <h3 data-id="resolution"><strong>RESOLUTION</strong></h3> <p>Resolution:<br> Fixed with kernel-2.6.32-754.3.5.el6.x86_64.rpm and microcode_ctl-1.17-33.3.el6_10.x86_64.rpm in Unitrends security update (>=08/16/2018)</p> <h3 data-id="link-to-advisories"><strong>LINK TO ADVISORIES</strong></h3> <p></p> <ul><li><a rel="nofollow" href="/home/leaving?allowTrusted=1&target=https%3A%2F%2Faccess.redhat.com%2Fsecurity%2Fcve%2Fcve-2018-3615%250D%250Ahttps%3A%2F%2Fnvd.nist.gov%2Fvuln%2Fdetail%2FCVE-2018-3615%250D%250Ahttps%3A%2F%2Faccess.redhat.com%2Ferrata%2FRHSA-2018%3A2390%250D%250Ahttps%3A%2F%2Fwww.intel.com%2Fcontent%2Fwww%2Fus%2Fen%2Fsecurity-center%2Fadvisory%2Fintel-sa-00161.html">https://access.redhat.com/security/cve/cve-2018-3615 https://nvd.nist.gov/vuln/detail/CVE-2018-3615 https://access.redhat.com/errata/RHSA-2018:2390 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00161.html</a></li></ul> </article> </main>