<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 03:57:08 +0000</lastBuildDate>
    <item>
      <title>bdu:2018-00994</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2018-00994</link>
      <description>bdu:2018-00994</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2018-00994</guid>
    </item>
    <item>
      <title>certfr-2018-avi-387 — De multiples vulnérabilités ont été découvertes dans les produits Intel.
Elles permettent à un attaquant de provoquer u…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2018-avi-387</link>
      <description>certfr-2018-avi-387</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2018-avi-387</guid>
    </item>
    <item>
      <title>cisco-sa-20180814-cpusidechannel — CPU Side-Channel Information Disclosure Vulnerabilities: August 2018</title>
      <link>https://cve.radiocsirt.org/vuln/cisco-sa-20180814-cpusidechannel</link>
      <description>&lt;p&gt;5On August 14th, 2018, three vulnerabilities were disclosed by Intel and security researchers that leverage a speculative execution side-channel method referred to as L1 Terminal Fault (L1TF) that affects modern Intel microprocessors. These vulnerabilities could allow an unprivileged, local attacker, in specific circumstances, to read privileged memory belonging to other processes.&#13;
The first vulnerability, CVE-2018-3615, affects Intel SGX technology and is referred to by the researchers who discovered it as foreshadow. This vulnerability is not known to affect any Cisco devices as the Cisco devices do not utilize Intel SGX technology.&#13;
&#13;
The second vulnerability, CVE-2018-3620, and the third vulnerability, CVE-2018-3646, are referred to as L1 Terminal Fault attacks by Intel. These two vulnerabilities affect multi-core processors that leverage Intel Hyper-Threading technology supporting Operating System, System Management Mode, and Virtualized workloads. Like the previously disclosed Spectre vulnerabilities, all three new vulnerabilities leverage cache-timing attacks to infer any disclosed data.&#13;
&#13;
To exploit any of these vulnerabilities, an attacker must be able to run crafted or script code on an affected device. Although the underlying CPU and operating system combination in a product or service may be affected by these vulnerabilities, the majority of Cisco products are closed systems that do not allow customers to run custom code and are, therefore, not vulnerable. Ther…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;5On August 14th, 2018, three vulnerabilities were disclosed by Intel and security researchers that leverage a speculative execution side-channel method referred to as L1 Terminal Fault (L1TF) that affects modern Intel microprocessors. These vulnerabilities could allow an unprivileged, local attacker, in specific circumstances, to read privileged memory belonging to other processes.&#13;
The first vulnerability, CVE-2018-3615, affects Intel SGX technology and is referred to by the researchers who discovered it as foreshadow. This vulnerability is not known to affect any Cisco devices as the Cisco devices do not utilize Intel SGX technology.&#13;
&#13;
The second vulnerability, CVE-2018-3620, and the third vulnerability, CVE-2018-3646, are referred to as L1 Terminal Fault attacks by Intel. These two vulnerabilities affect multi-core processors that leverage Intel Hyper-Threading technology supporting Operating System, System Management Mode, and Virtualized workloads. Like the previously disclosed Spectre vulnerabilities, all three new vulnerabilities leverage cache-timing attacks to infer any disclosed data.&#13;
&#13;
To exploit any of these vulnerabilities, an attacker must be able to run crafted or script code on an affected device. Although the underlying CPU and operating system combination in a product or service may be affected by these vulnerabilities, the majority of Cisco products are closed systems that do not allow customers to run custom code and are, therefore, not vulnerable. Ther…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cisco-sa-20180814-cpusidechannel</guid>
    </item>
    <item>
      <title>cnvd-2018-15496</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-15496</link>
      <description>cnvd-2018-15496</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-15496</guid>
    </item>
    <item>
      <title>EUVD-2026-323008</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-323008</link>
      <description>EUVD-2026-323008</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-323008</guid>
    </item>
    <item>
      <title>fkie_cve-2018-3615</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-3615</link>
      <description>&lt;p&gt;Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-3615</guid>
    </item>
    <item>
      <title>GHSA-9w6j-7396-jgw4</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-9w6j-7396-jgw4</link>
      <description>&lt;p&gt;Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-9w6j-7396-jgw4</guid>
    </item>
    <item>
      <title>gsd-2018-3615</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-3615</link>
      <description>gsd-2018-3615</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-3615</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:11242-1 — spectre-meltdown-checker-26.36.0602723-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11242-1</link>
      <description>&lt;p&gt;spectre-meltdown-checker-26.36.0602723-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;spectre-meltdown-checker-26.36.0602723-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:11242-1</guid>
    </item>
    <item>
      <title>Withdrawn: UBUNTU-CVE-2018-3615</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-3615</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: linux-azure&lt;/p&gt;
&lt;p&gt;Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: linux-azure&lt;/p&gt;
&lt;p&gt;Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-3615</guid>
    </item>
  </channel>
</rss>
