Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-20588
HistoryAug 08, 2023 - 12:00 a.m.

CVE-2023-20588

2023-08-0800:00:00
ubuntu.com
ubuntu.com
15
amd processors
speculative data leakage
confidentiality
bugzilla
redhat
suse
unprivileged attacker
data leakage

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

0.001 Low

EPSS

Percentile

19.9%

A division-by-zero error on some AMD processors can potentially return
speculative data resulting in loss of confidentiality.

Bugs

Notes

Author Note
Priority reason: An unprivileged local attacker can leak data.
Rows per page:
1-10 of 831

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

0.001 Low

EPSS

Percentile

19.9%