6.5
CVSSv3

CVE-2018-15572

Published: 20/08/2018 Updated: 03/10/2019
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.5 | Impact Score: 4 | Exploitability Score: 2
VMScore: 188
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The spectre_v2_select_mitigation function in arch/x86/kernel/cpu/bugs.c in the Linux kernel prior to 4.18.1 does not always fill RSB upon a context switch, which makes it easier for malicious users to conduct userspace-userspace spectreRSB attacks.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

debian debian linux 8.0

debian debian linux 9.0

canonical ubuntu linux 18.04

canonical ubuntu linux 16.04

canonical ubuntu linux 14.04

canonical ubuntu linux 12.04

linux linux kernel

Vendor Advisories

Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks CVE-2018-6554 A memory leak in the irda_bind function in the irda subsystem was discovered A local user can take advantage of this flaw to cause a denial of service (memory consumption) CVE ...
Several security issues were fixed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...

Github Repositories

livepatch overlay

Livepatch overlay Open standard for livepatch patches management for compatibility on different vendors Why We have differents livepatch services, each one with their own way of storing the livepatch patches This repository is trying to fix this by creating a open standard for storing and sharing livepatch patches in a reusable way This can be optimized, giving the freedom t

livepatch overlay

Livepatch overlay Open standard for livepatch patches management for compatibility on different vendors Why We have differents livepatch services, each one with their own way of storing the livepatch patches This repository is trying to fix this by creating a open standard for storing and sharing livepatch patches in a reusable way This can be optimized, giving the freedom t