CISCO-SA-20180104-CPUSIDECHANNEL
On January 3, 2018, researchers disclosed three vulnerabilities that take advantage of the implementation of speculative execution of instructions on many modern microprocessor architectures to perform side-channel information disclosure attacks. These vulnerabilities could allow an unprivileged local attacker, in specific circumstances, to read privileged memory belonging to other processes or memory allocated to the operating system kernel. The first two vulnerabilities, CVE-2017-5753 and CVE-2017-5715, are collectively known as Spectre. The third vulnerability, CVE-2017-5754, is known as Meltdown. The vulnerabilities are all variants of the same attack and differ in the way that speculative execution is exploited. To exploit any of these vulnerabilities, an attacker must be able to run crafted code on an affected device. Although the underlying CPU and operating system combination in a product or service may be affected by these vulnerabilities, the majority of Cisco products are closed systems that do not allow customers to run custom code and are, therefore, not vulnerable. There is no vector to exploit them. Cisco products are considered potentially vulnerable only if they allow customers to execute custom code side-by-side with Cisco code on the same microprocessor. A Cisco product that may be deployed as a virtual machine or a container, even while not directly affected by any of these vulnerabilities, could be targeted by such attacks if the hosting environment is vulnerable. Cisco recommends that customers harden their virtual environments, tightly control user access, and ensure that all security updates are installed. Customers who are deploying products as a virtual device in multi-tenant hosting environments should ensure that the underlying hardware, as well as operating system or hypervisor, is patched against the vulnerabilities in question. Although Cisco cloud services are not directly affected by these vulnerabilities, the infrastructure on which they run may be impacted. Refer to the “Affected Products” section of this advisory for information about the impact of these vulnerabilities on Cisco cloud services. Cisco will release software updates that address these vulnerabilities. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180104-cpusidechannel ["https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180104-cpusidechannel"]
Risk Scores
Exploit Intelligence
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh58549 (circl)
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh64005 (circl)
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180104-cpusidechannel (circl)
- https://sec.cloudapps.cisco.com/security/center/viewAlert.x?alertId=56354 (circl)
- https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html (circl)
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32644 (circl)
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh49919 (circl)
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32392 (circl)
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh49646 (circl)
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32416 (circl)
…and 25 more exploits
Timeline
- Jan 4, 2018 CVE Published
- Jul 6, 2018 CVE Updated
References
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh58549 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh64005 url
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180104-cpusidechannel advisory
- https://sec.cloudapps.cisco.com/security/center/viewAlert.x?alertId=56354 url
- https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32644 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh49919 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32392 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh49646 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32416 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvj59152 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh31418 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32429 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32516 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh44164 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh44165 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh44166 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32393 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32394 url
- https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvh32390 url
…and 15 more