CVE-2018-3639

medium
Published 2018-05-22 ยท Modified 2026-05-29
CVSS v3
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
6.5

Description

Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB), Variant 4.

Predictions

Exploit likelihood
90%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Exploits

Public proof-of-concept code below. AS-IS, for defenders and authorised testing only.

Exploit-DB

EDB-44695 dos hardware verified
Google Security Research ยท 2018-05-22

AMD / ARM / Intel - Speculative Execution Variant 4 Speculative Store Bypass

Source code queued for fetch โ€” refresh in a moment.

OS impact

redhat Red Hat Affected 8 releases
VersionStatusFixed in
7.7 Affected โ€”
7.6 Affected โ€”
7.5 Affected โ€”
7.4 Affected โ€”
7.3 Affected โ€”
7.0 Affected โ€”
6.7 Affected โ€”
6.0 Affected โ€”
suse SUSE Affected 1 release
VersionStatusFixed in
โ€” Affected โ€”
ubuntu Ubuntu Affected 5 releases
VersionStatusFixed in
18.04 Affected โ€”
17.10 Affected โ€”
16.04 Affected โ€”
14.04 Affected โ€”
12.04 Affected โ€”
windows Windows Affected 8 releases
VersionStatusFixed in
sp2 Affected โ€”
r2 Affected โ€”
1809 Affected โ€”
1803 Affected โ€”
1709 Affected โ€”
1703 Affected โ€”
1607 Affected โ€”
- Affected โ€”
debian Debian Mixed 7 releases
VersionStatusFixed in
trixie Fixed 3.20180703.1
sid Fixed 3.20180703.1
forky Fixed 3.20180703.1
bullseye Fixed 3.20180703.1
bookworm Fixed 3.20180703.1
9.0 Affected โ€”
8.0 Affected โ€”

Application impact

VendorProductVersionsFixed
intel intelatom_cc2308
intel intelatom_cc3308
intel intelatom_cc3338
intel intelatom_cc3508
intel intelatom_cc3538
intel intelatom_cc3558
intel intelatom_cc3708
intel intelatom_cc3750
intel intelatom_cc3758
intel intelatom_cc3808
intel intelatom_cc3830
intel intelatom_cc3850
intel intelatom_cc3858
intel intelatom_cc3950
intel intelatom_cc3955
intel intelatom_cc3958
intel intelatom_ee3805
intel intelatom_ee3815
intel intelatom_ee3825
intel intelatom_ee3826
intel intelatom_ee3827
intel intelatom_ee3845
intel intelatom_x5-e3930-
intel intelatom_x5-e3940-
intel intelatom_x7-e3950-
intel intelatom_zz2420
intel intelatom_zz2460
intel intelatom_zz2480
intel intelatom_zz2520
intel intelatom_zz2560
intel intelatom_zz2580
intel intelatom_zz2760
intel intelatom_zz3460
intel intelatom_zz3480
intel intelatom_zz3530
intel intelatom_zz3560
intel intelatom_zz3570
intel intelatom_zz3580
intel intelatom_zz3590
intel intelatom_zz3735d
intel intelatom_zz3735e
intel intelatom_zz3735f
intel intelatom_zz3735g
intel intelatom_zz3736f
intel intelatom_zz3736g
intel intelatom_zz3740
intel intelatom_zz3740d
intel intelatom_zz3745
intel intelatom_zz3745d
intel intelatom_zz3770
intel intelatom_zz3770d
intel intelatom_zz3775
intel intelatom_zz3775d
intel intelatom_zz3785
intel intelatom_zz3795
intel intelceleron_jj3455
intel intelceleron_jj4005
intel intelceleron_jj4105
intel intelceleron_nn3450
intel intelcore_i332nm
intel intelcore_i345nm
intel intelcore_i532nm
intel intelcore_i545nm
intel intelcore_i732nm
intel intelcore_i745nm
intel intelcore_m32nm
intel intelcore_m45nm
intel intelpentiumn4000
intel intelpentiumn4100
intel intelpentiumn4200
intel intelpentium_jj4205
intel intelpentium_silverj5005
intel intelpentium_silvern5000
intel intelxeon_e-1105c-
intel intelxeon_e3125c_
intel intelxeon_e31220_
intel intelxeon_e31275_
intel intelxeon_e31505m_v6
intel intelxeon_e31515m_v5
intel intelxeon_e31535m_v5
intel intelxeon_e31535m_v6
intel intelxeon_e31545m_v5
intel intelxeon_e31558l_v5
intel intelxeon_e31565l_v5
intel intelxeon_e31575m_v5
intel intelxeon_e31578l_v5
intel intelxeon_e31585_v5
intel intelxeon_e31585l_v5
intel intelxeon_e33600
intel intelxeon_e35600
intel intelxeon_e37500
intel intelxeon_e3e5502
intel intelxeon_e3e5503
intel intelxeon_e3e5504
intel intelxeon_e3e5506
intel intelxeon_e3e5507
intel intelxeon_e3e5520
intel intelxeon_e3e5530
intel intelxeon_e3e5540
intel intelxeon_e3e6510
intel intelxeon_e3e6540
intel intelxeon_e3e6550
intel intelxeon_e3l3403
intel intelxeon_e3l3406
intel intelxeon_e3l3426
intel intelxeon_e3l5506
intel intelxeon_e3l5508_
intel intelxeon_e3l5518_
intel intelxeon_e3l5520
intel intelxeon_e3l5530
intel intelxeon_e3w5580
intel intelxeon_e3w5590
intel intelxeon_e3x3430
intel intelxeon_e3x3440
intel intelxeon_e3x3450
intel intelxeon_e3x3460
intel intelxeon_e3x3470
intel intelxeon_e3x3480
intel intelxeon_e3x5550
intel intelxeon_e3x5560
intel intelxeon_e3x5570
intel intelxeon_e3_1105c_v2-
intel intelxeon_e3_1125c_v2-
intel intelxeon_e3_1220_v2-
intel intelxeon_e3_1220_v3-
intel intelxeon_e3_1220_v5-
intel intelxeon_e3_1220_v6-
intel intelxeon_e3_12201-
intel intelxeon_e3_12201_v2-
intel intelxeon_e3_1220l_v3-
intel intelxeon_e3_1225-
intel intelxeon_e3_1225_v2-
intel intelxeon_e3_1225_v3-
intel intelxeon_e3_1225_v5-
intel intelxeon_e3_1225_v6-
intel intelxeon_e3_1226_v3-
intel intelxeon_e3_1230-
intel intelxeon_e3_1230_v2-
intel intelxeon_e3_1230_v3-
intel intelxeon_e3_1230_v5-
intel intelxeon_e3_1230_v6-
intel intelxeon_e3_1230l_v3-
intel intelxeon_e3_1231_v3-
intel intelxeon_e3_1235-
intel intelxeon_e3_1235l_v5-
intel intelxeon_e3_1240-
intel intelxeon_e3_1240_v2-
intel intelxeon_e3_1240_v3-
intel intelxeon_e3_1240_v5-
intel intelxeon_e3_1240_v6-
intel intelxeon_e3_1240l_v3-
intel intelxeon_e3_1240l_v5-
intel intelxeon_e3_1241_v3-
intel intelxeon_e3_1245-
intel intelxeon_e3_1245_v2-
intel intelxeon_e3_1245_v3-
intel intelxeon_e3_1245_v5-
intel intelxeon_e3_1245_v6-
intel intelxeon_e3_1246_v3-
intel intelxeon_e3_1258l_v4-
intel intelxeon_e3_1260l-
intel intelxeon_e3_1260l_v5-
intel intelxeon_e3_1265l_v2-
intel intelxeon_e3_1265l_v3-
intel intelxeon_e3_1265l_v4-
intel intelxeon_e3_1268l_v3-
intel intelxeon_e3_1268l_v5-
intel intelxeon_e3_1270-
intel intelxeon_e3_1270_v2-
intel intelxeon_e3_1270_v3-
intel intelxeon_e3_1270_v5-
intel intelxeon_e3_1270_v6-
intel intelxeon_e3_1271_v3-
intel intelxeon_e3_1275_v2-
intel intelxeon_e3_1275_v3-
intel intelxeon_e3_1275_v5-
intel intelxeon_e3_1275_v6-
intel intelxeon_e3_1275l_v3-
intel intelxeon_e3_1276_v3-
intel intelxeon_e3_1278l_v4-
intel intelxeon_e3_1280-
intel intelxeon_e3_1280_v2-
intel intelxeon_e3_1280_v3-
intel intelxeon_e3_1280_v5-
intel intelxeon_e3_1280_v6-
intel intelxeon_e3_1281_v3-
intel intelxeon_e3_1285_v3-
intel intelxeon_e3_1285_v4-
intel intelxeon_e3_1285_v6-
intel intelxeon_e3_1285l_v3-
intel intelxeon_e3_1285l_v4-
intel intelxeon_e3_1286_v3-
intel intelxeon_e3_1286l_v3-
intel intelxeon_e3_1290-
intel intelxeon_e3_1290_v2-
intel intelxeon_e3_1501l_v6-
intel intelxeon_e3_1501m_v6-
intel intelxeon_e3_1505l_v5-
intel intelxeon_e3_1505l_v6-
intel intelxeon_e3_1505m_v5-

References

CWEs

CWE-203

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.