<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 10:33:07 +0000</lastBuildDate>
    <item>
      <title>bdu:2018-00001</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2018-00001</link>
      <description>bdu:2018-00001</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2018-00001</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2017-5754 — CVE-2017-5754 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2017-5754</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2017-5754</guid>
    </item>
    <item>
      <title>certfr-2018-ale-001 — &lt;strong&gt;\[Mise à jour du 25/05/2018 : ajout de bulletins Microsoft (cf.
section Documentation)\]&lt;/strong&gt;

&lt;strong&gt;\[Mi…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2018-ale-001</link>
      <description>certfr-2018-ale-001</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2018-ale-001</guid>
    </item>
    <item>
      <title>certfr-2018-avi-004 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
RedHat . Elles permettent à un attaquant de prov…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2018-avi-004</link>
      <description>certfr-2018-avi-004</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2018-avi-004</guid>
    </item>
    <item>
      <title>cisco-sa-20180104-cpusidechannel — CPU Side-Channel Information Disclosure Vulnerabilities</title>
      <link>https://cve.radiocsirt.org/vuln/cisco-sa-20180104-cpusidechannel</link>
      <description>&lt;p&gt;On January 3, 2018, researchers disclosed three vulnerabilities that take advantage of the implementation of speculative execution of instructions on many modern microprocessor architectures to perform side-channel information disclosure attacks. These vulnerabilities could allow an unprivileged local attacker, in specific circumstances, to read privileged memory belonging to other processes or memory allocated to  the operating system kernel.&#13;
&#13;
The first two vulnerabilities, CVE-2017-5753 and CVE-2017-5715,  are collectively known as Spectre. The third vulnerability, CVE-2017-5754, is known as Meltdown. The vulnerabilities are all variants of the same attack and differ in the way that speculative execution is exploited.&#13;
&#13;
To exploit any of these vulnerabilities, an attacker must be able to run crafted code on an affected device. Although the underlying CPU and operating system combination in a product or service may be affected by these vulnerabilities, the majority of Cisco products are closed systems that do not allow customers to run custom code and are, therefore, not vulnerable. There is no vector to exploit them. Cisco products are considered potentially vulnerable only if they allow customers to execute custom code side-by-side with Cisco code on the same microprocessor.&#13;
&#13;
A Cisco product that may be deployed as a virtual machine or a container, even while not directly affected by any of these vulnerabilities, could be targeted by such attacks if the hosting envir…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;On January 3, 2018, researchers disclosed three vulnerabilities that take advantage of the implementation of speculative execution of instructions on many modern microprocessor architectures to perform side-channel information disclosure attacks. These vulnerabilities could allow an unprivileged local attacker, in specific circumstances, to read privileged memory belonging to other processes or memory allocated to  the operating system kernel.&#13;
&#13;
The first two vulnerabilities, CVE-2017-5753 and CVE-2017-5715,  are collectively known as Spectre. The third vulnerability, CVE-2017-5754, is known as Meltdown. The vulnerabilities are all variants of the same attack and differ in the way that speculative execution is exploited.&#13;
&#13;
To exploit any of these vulnerabilities, an attacker must be able to run crafted code on an affected device. Although the underlying CPU and operating system combination in a product or service may be affected by these vulnerabilities, the majority of Cisco products are closed systems that do not allow customers to run custom code and are, therefore, not vulnerable. There is no vector to exploit them. Cisco products are considered potentially vulnerable only if they allow customers to execute custom code side-by-side with Cisco code on the same microprocessor.&#13;
&#13;
A Cisco product that may be deployed as a virtual machine or a container, even while not directly affected by any of these vulnerabilities, could be targeted by such attacks if the hosting envir…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cisco-sa-20180104-cpusidechannel</guid>
    </item>
    <item>
      <title>cnvd-2018-00303</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-00303</link>
      <description>cnvd-2018-00303</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-00303</guid>
    </item>
    <item>
      <title>EUVD-2026-322539</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-322539</link>
      <description>EUVD-2026-322539</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-322539</guid>
    </item>
    <item>
      <title>fkie_cve-2017-5754</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-5754</link>
      <description>&lt;p&gt;Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis of the data cache.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis of the data cache.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-5754</guid>
    </item>
    <item>
      <title>gsd-2017-5754</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-5754</link>
      <description>gsd-2017-5754</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-5754</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10728-1 — kernel-devel-5.14.6-1.4 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10728-1</link>
      <description>&lt;p&gt;kernel-devel-5.14.6-1.4 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel-devel-5.14.6-1.4 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10728-1</guid>
    </item>
    <item>
      <title>RHSA-2018:0010 — Red Hat Security Advisory: kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2018:0010</link>
      <description>&lt;p&gt;hw: cpu: speculative execution bounds-check bypass hw: cpu: speculative execution permission faults handling&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;hw: cpu: speculative execution bounds-check bypass hw: cpu: speculative execution permission faults handling&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2018:0010</guid>
    </item>
    <item>
      <title>SUSE-SU-2018:0010-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2018:0010-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2018:0010-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2017-5754</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-5754</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: firefox, Ubuntu:14.04:LTS: linux, Ubuntu:14.04:LTS: linux-aws, Ubuntu:14.04:LTS: linux-lts-xenial, Ubuntu:16.04:LTS: firefox, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-azure, Ubuntu:16.04:LTS: linux-euclid, Ubuntu:16.04:LTS: linux-gcp and 15 more&lt;/p&gt;
&lt;p&gt;Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis of the data cache.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: firefox, Ubuntu:14.04:LTS: linux, Ubuntu:14.04:LTS: linux-aws, Ubuntu:14.04:LTS: linux-lts-xenial, Ubuntu:16.04:LTS: firefox, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-azure, Ubuntu:16.04:LTS: linux-euclid, Ubuntu:16.04:LTS: linux-gcp and 15 more&lt;/p&gt;
&lt;p&gt;Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis of the data cache.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-5754</guid>
    </item>
    <item>
      <title>VDE-2018-002 — Pepperl+Fuchs: HMI devices vulnerable to Meltdown and Spectre Attacks</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2018-002</link>
      <description>&lt;p&gt;Critical vulnerabilities within several CPUs have been identified by security researchers. These hardware vulnerabilities allow programs to learn about the contents of a system&amp;#39;s memory, using side-channel attacks. Potential attack vectors against these vulnerabilities have been published and dubbed Meltdown and Spectre. While programs are typically not permitted to read data from the OS kernel or from other programs, a malicious program can exploit Meltdown and Spectre to get hold of secrets stored in kernel memory or the memory of other programs executed on the same CPU. As a consequence, an exploit could allow attackers to get access to any sensitive data, including passwords or cryptographic keys.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Critical vulnerabilities within several CPUs have been identified by security researchers. These hardware vulnerabilities allow programs to learn about the contents of a system&amp;#39;s memory, using side-channel attacks. Potential attack vectors against these vulnerabilities have been published and dubbed Meltdown and Spectre. While programs are typically not permitted to read data from the OS kernel or from other programs, a malicious program can exploit Meltdown and Spectre to get hold of secrets stored in kernel memory or the memory of other programs executed on the same CPU. As a consequence, an exploit could allow attackers to get access to any sensitive data, including passwords or cryptographic keys.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2018-002</guid>
    </item>
    <item>
      <title>VDE-2018-003 — PHOENIX CONTACT: addressing Meltdown and Spectre vulnerabilities</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2018-003</link>
      <description>&lt;p&gt;Several CPUs manufactured by Intel, AMD or based on ARM technology may leak information due to their internal operation if attacked by specifically written software executed on the affected systems.&lt;/p&gt;
&lt;p&gt;The information in this advisory is based on the statements of respective manufacturers.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Several CPUs manufactured by Intel, AMD or based on ARM technology may leak information due to their internal operation if attacked by specifically written software executed on the affected systems.&lt;/p&gt;
&lt;p&gt;The information in this advisory is based on the statements of respective manufacturers.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2018-003</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0103 — Meltdown und Spectre: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0103</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in den meisten der aktuellen Prozessoren ausnutzen, um Sicherheitsmechanismen zu umgehen und physikalischen Speicher auszulesen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in den meisten der aktuellen Prozessoren ausnutzen, um Sicherheitsmechanismen zu umgehen und physikalischen Speicher auszulesen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0103</guid>
    </item>
  </channel>
</rss>
