CVE-2020-13844 PUBLISHED

Arm Armv8-A core implementations utilizing speculative execution past unconditional changes in control flow may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka "straight-line speculation."

EPSS 0.14% · 33.4th percentile

Risk Scores

EPSS Score
0.14%
33.4th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSgcc-9-cross-ports14ubuntu1, 11ubuntu1, 10ubuntu2
Ubuntu:16.04:LTSgcc-4.94.9.3-5ubuntu1, 4.9.3-6ubuntu2, 4.9.3-8ubuntu1
Ubuntu:16.04:LTSgcc-opt0, 1.20
Ubuntu:16.04:LTSgcc-4.7-armel-cross3, 1.86, 1.90
Ubuntu:20.04:LTSgcc-9-cross21ubuntu3, 21ubuntu6, 18ubuntu2
Ubuntu:14.04:LTSgccgo-4.94.9-20140330-0ubuntu1, 0, 4.9-20140213-0ubuntu1
Ubuntu:20.04:LTSgcc-99.2.1-12ubuntu1, 9.3.0-17ubuntu1~20.04, 9.3.0-10ubuntu2
Ubuntu:22.04:LTSgcc-opt0, 1.20build1
Ubuntu:25.10gcc-h8300-hms1:3.4.6+dfsg2-4.2, 0
Ubuntu:16.04:LTSgcc-4.8-arm64-cross0.17, 0, 0.18
Ubuntu:22.04:LTSgcc-h8300-hms0, 1:3.4.6+dfsg2-4.1, 1:3.4.6+dfsg2-4.2
Ubuntu:18.04:LTSllvm-toolchain-4.01:4.0.1-8, 0, 1:4.0.1-6
Ubuntu:20.04:LTSgcc-m68hc1x1:3.3.6+3.1+dfsg-3.1ubuntu1, 0
Ubuntu:25.10gcc-avr0, 1:14.2.0-2
Ubuntu:20.04:LTSgcc-snapshot1:20200402-0ubuntu1, 1:20191201-0ubuntu1, 1:20191008-1ubuntu1
Ubuntu:16.04:LTSgcc-3.31:3.3.6ds1-28ubuntu1, 0, 1:3.3.6ds1-27.2ubuntu1
Ubuntu:25.10gcc-snapshot1:20250804-1ubuntu1, 1:20250921-1ubuntu1, 1:20250502-1ubuntu1
Ubuntu:16.04:LTSgcc-4.8-ppc64el-cross0.9, 0.8, 2
Ubuntu:24.04:LTSgcc-mingw-w6426.1, 25.3, 0
Ubuntu:20.04:LTSgcc-arm-none-eabi0, 15:9-2019-q4-0ubuntu1, 15:8-2019-q3-1

…and 79 more

Timeline

References

Open in Interactive Console →