<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 22:24:16 +0000</lastBuildDate>
    <item>
      <title>bdu:2018-00995</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2018-00995</link>
      <description>bdu:2018-00995</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2018-00995</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2018-3620 — CVE-2018-3620 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2018-3620</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2018-3620</guid>
    </item>
    <item>
      <title>certfr-2018-avi-385 — De multiples vulnérabilités ont été découvertes dans les produits
VMware. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2018-avi-385</link>
      <description>certfr-2018-avi-385</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2018-avi-385</guid>
    </item>
    <item>
      <title>cisco-sa-20180814-cpusidechannel — CPU Side-Channel Information Disclosure Vulnerabilities: August 2018</title>
      <link>https://cve.radiocsirt.org/vuln/cisco-sa-20180814-cpusidechannel</link>
      <description>&lt;p&gt;5On August 14th, 2018, three vulnerabilities were disclosed by Intel and security researchers that leverage a speculative execution side-channel method referred to as L1 Terminal Fault (L1TF) that affects modern Intel microprocessors. These vulnerabilities could allow an unprivileged, local attacker, in specific circumstances, to read privileged memory belonging to other processes.&#13;
The first vulnerability, CVE-2018-3615, affects Intel SGX technology and is referred to by the researchers who discovered it as foreshadow. This vulnerability is not known to affect any Cisco devices as the Cisco devices do not utilize Intel SGX technology.&#13;
&#13;
The second vulnerability, CVE-2018-3620, and the third vulnerability, CVE-2018-3646, are referred to as L1 Terminal Fault attacks by Intel. These two vulnerabilities affect multi-core processors that leverage Intel Hyper-Threading technology supporting Operating System, System Management Mode, and Virtualized workloads. Like the previously disclosed Spectre vulnerabilities, all three new vulnerabilities leverage cache-timing attacks to infer any disclosed data.&#13;
&#13;
To exploit any of these vulnerabilities, an attacker must be able to run crafted or script code on an affected device. Although the underlying CPU and operating system combination in a product or service may be affected by these vulnerabilities, the majority of Cisco products are closed systems that do not allow customers to run custom code and are, therefore, not vulnerable. Ther…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;5On August 14th, 2018, three vulnerabilities were disclosed by Intel and security researchers that leverage a speculative execution side-channel method referred to as L1 Terminal Fault (L1TF) that affects modern Intel microprocessors. These vulnerabilities could allow an unprivileged, local attacker, in specific circumstances, to read privileged memory belonging to other processes.&#13;
The first vulnerability, CVE-2018-3615, affects Intel SGX technology and is referred to by the researchers who discovered it as foreshadow. This vulnerability is not known to affect any Cisco devices as the Cisco devices do not utilize Intel SGX technology.&#13;
&#13;
The second vulnerability, CVE-2018-3620, and the third vulnerability, CVE-2018-3646, are referred to as L1 Terminal Fault attacks by Intel. These two vulnerabilities affect multi-core processors that leverage Intel Hyper-Threading technology supporting Operating System, System Management Mode, and Virtualized workloads. Like the previously disclosed Spectre vulnerabilities, all three new vulnerabilities leverage cache-timing attacks to infer any disclosed data.&#13;
&#13;
To exploit any of these vulnerabilities, an attacker must be able to run crafted or script code on an affected device. Although the underlying CPU and operating system combination in a product or service may be affected by these vulnerabilities, the majority of Cisco products are closed systems that do not allow customers to run custom code and are, therefore, not vulnerable. Ther…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cisco-sa-20180814-cpusidechannel</guid>
    </item>
    <item>
      <title>cnvd-2018-15495</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-15495</link>
      <description>cnvd-2018-15495</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-15495</guid>
    </item>
    <item>
      <title>EUVD-2026-323007</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-323007</link>
      <description>EUVD-2026-323007</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-323007</guid>
    </item>
    <item>
      <title>fkie_cve-2018-3620</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-3620</link>
      <description>&lt;p&gt;Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-3620</guid>
    </item>
    <item>
      <title>GHSA-h9mf-j5vf-pc99</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h9mf-j5vf-pc99</link>
      <description>&lt;p&gt;Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h9mf-j5vf-pc99</guid>
    </item>
    <item>
      <title>gsd-2018-3620</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-3620</link>
      <description>gsd-2018-3620</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-3620</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:11242-1 — spectre-meltdown-checker-26.36.0602723-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11242-1</link>
      <description>&lt;p&gt;spectre-meltdown-checker-26.36.0602723-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;spectre-meltdown-checker-26.36.0602723-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:11242-1</guid>
    </item>
    <item>
      <title>RHSA-2018:2387 — Red Hat Security Advisory: kernel security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2018:2387</link>
      <description>&lt;p&gt;Kernel: hw: cpu: L1 terminal fault (L1TF) hw: cpu: speculative store bypass Kernel: hw: cpu: L1 terminal fault (L1TF)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Kernel: hw: cpu: L1 terminal fault (L1TF) hw: cpu: speculative store bypass Kernel: hw: cpu: L1 terminal fault (L1TF)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2018:2387</guid>
    </item>
    <item>
      <title>SUSE-SU-2018:2328-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2018:2328-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2018:2328-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2018-3620</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-3620</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: linux, Ubuntu:14.04:LTS: linux-aws, Ubuntu:14.04:LTS: linux-lts-xenial, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-azure, Ubuntu:16.04:LTS: linux-gcp, Ubuntu:16.04:LTS: linux-hwe, Ubuntu:16.04:LTS: linux-kvm, Ubuntu:Pro:FIPS:16.04:LTS: linux-fips and 14 more&lt;/p&gt;
&lt;p&gt;Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: linux, Ubuntu:14.04:LTS: linux-aws, Ubuntu:14.04:LTS: linux-lts-xenial, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-azure, Ubuntu:16.04:LTS: linux-gcp, Ubuntu:16.04:LTS: linux-hwe, Ubuntu:16.04:LTS: linux-kvm, Ubuntu:Pro:FIPS:16.04:LTS: linux-fips and 14 more&lt;/p&gt;
&lt;p&gt;Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-3620</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1212 — Oracle Communications Applications: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1212</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Oracle Communications Applications ausnutzen, um dadurch die Integrität, Vertraulichkeit und Verfügbarkeit zu gefährden.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Oracle Communications Applications ausnutzen, um dadurch die Integrität, Vertraulichkeit und Verfügbarkeit zu gefährden.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1212</guid>
    </item>
  </channel>
</rss>
