5.5
CVSSv3

CVE-2020-0549

Published: 28/01/2020 Updated: 07/11/2023
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

It exists that memory contents previously stored in microarchitectural special registers after RDRAND, RDSEED, and SGX EGETKEY read operations on Intel client and Xeon E3 processors may be briefly exposed to processes on the same or different processor cores. A local attacker could use this to expose sensitive information. (CVE-2020-0543)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel core i7-8700b firmware -

intel core i7-8569u firmware -

intel core i7 8650u firmware -

intel core i7 8565u firmware -

intel core i7 8560u firmware -

intel core i7 8559u firmware -

intel core i7 8550u firmware -

intel core i7 8500y firmware -

intel core i7 10510y firmware -

intel core i5 10310y firmware -

intel core i5 10210y firmware -

intel core i5 10110y firmware -

intel xeon 8253 firmware -

intel xeon 8256 firmware -

intel xeon 8260 firmware -

intel xeon 8260l firmware -

intel xeon 8260m firmware -

intel xeon 8260y firmware -

intel xeon 8268 firmware -

intel xeon 8270 firmware -

intel xeon 8276 firmware -

intel xeon 8276l firmware -

intel xeon 8276m firmware -

intel xeon 8280 firmware -

intel xeon 8280l firmware -

intel xeon 8280m firmware -

intel xeon 9220 firmware -

intel xeon 9221 firmware -

intel xeon 9222 firmware -

intel xeon 9242 firmware -

intel xeon 9282 firmware -

intel xeon 5215 firmware -

intel xeon 5215l firmware -

intel xeon 5215m firmware -

intel xeon 5215r firmware -

intel xeon 5217 firmware -

intel xeon 5218 firmware -

intel xeon 5218b firmware -

intel xeon 5218n firmware -

intel xeon 5218t firmware -

intel xeon 5220 firmware -

intel xeon 5220r firmware -

intel xeon 5220s firmware -

intel xeon 5220t firmware -

intel xeon 5222 firmware -

intel xeon 6222v firmware -

intel xeon 6226 firmware -

intel xeon 6230 firmware -

intel xeon 6230n firmware -

intel xeon 6230t firmware -

intel xeon 6234 firmware -

intel xeon 6238 firmware -

intel xeon 6238l firmware -

intel xeon 6238m firmware -

intel xeon 6238t firmware -

intel xeon 6240 firmware -

intel xeon 6240l firmware -

intel xeon 6240m firmware -

intel xeon 6240y firmware -

intel xeon 6242 firmware -

intel xeon 6244 firmware -

intel xeon 6246 firmware -

intel xeon 6248 firmware -

intel xeon 6252 firmware -

intel xeon 6252n firmware -

intel xeon 6254 firmware -

intel xeon 6262v firmware -

intel xeon 4208 firmware -

intel xeon 4208r firmware -

intel xeon 4209t firmware -

intel xeon 4210 firmware -

intel xeon 4210r firmware -

intel xeon 4214 firmware -

intel xeon 4214c firmware -

intel xeon 4214r firmware -

intel xeon 4214y firmware -

intel xeon 4215 firmware -

intel xeon 4216 firmware -

intel xeon 4216r firmware -

intel xeon 3204 firmware -

intel xeon 3206r firmware -

intel xeon w-3275m firmware -

intel xeon w-3275 firmware -

intel xeon w-3265m firmware -

intel xeon w-3265 firmware -

intel xeon w-3245m firmware -

intel xeon w-3245 firmware -

intel xeon w-3235 firmware -

intel xeon w-3225 firmware -

intel xeon w-3223 firmware -

intel xeon w-2295 firmware -

intel xeon w-2275 firmware -

intel xeon w-2265 firmware -

intel xeon w-2255 firmware -

intel xeon w-2245 firmware -

intel xeon w-2235 firmware -

intel xeon w-2225 firmware -

intel xeon w-2223 firmware -

intel core i9-10940x firmware -

intel core i9-10920x firmware -

intel core i9-10900x firmware -

intel core i9-9960x firmware -

intel core i9-9940x firmware -

intel core i9-9920x firmware -

intel core i9-9900x firmware -

intel core i9-9820x firmware -

intel core i9-9800x firmware -

intel core i9-7960x firmware -

intel core i9-7940x firmware -

intel core i9-7920x firmware -

intel core i9-7900x firmware -

intel core i7-7820x firmware -

intel core i7-7800x firmware -

intel core i7-7740x firmware -

intel core i7-7640x firmware -

intel core i9-8950hk firmware -

intel core i7-8750h firmware -

intel core i7-8850h firmware -

intel core i5-8300h firmware -

intel core i5-8400b firmware -

intel core i5-8400h firmware -

intel core i5-8500b firmware -

intel core i9-9980hk firmware -

intel core i9-9880h firmware -

intel core i7-9850h firmware -

intel core i7-9750hf firmware -

intel core i5-9400h firmware -

intel core i5-9300h firmware -

intel core i7-8670 firmware -

intel core i7-8670t firmware -

intel core i7-8700 firmware -

intel core i7-8700t firmware -

intel core i5-8400 firmware -

intel core i5-8400t firmware -

intel core i5-8420 firmware -

intel core i5-8420t firmware -

intel core i5-8500 firmware -

intel core i5-8500t firmware -

intel core i5-8550 firmware -

intel core i5-8600 firmware -

intel core i5-8600t firmware -

intel core i5-8650 firmware -

intel core i9-9900k firmware -

intel core i9-9900kf firmware -

intel core i7-9700k firmware -

intel core i7-9700kf firmware -

intel core i5-9600k firmware -

intel core i5-9600kf firmware -

intel core i5-9400 firmware -

intel core i5-9400f firmware -

intel core i3-8000t firmware -

intel core i3-8000 firmware -

intel core i3-8020 firmware -

intel core i3-8100 firmware -

intel core i3-8100h firmware -

intel core i3-8100t firmware -

intel core i3-8120 firmware -

intel core i3-8300 firmware -

intel core i3-8300t firmware -

intel core i3-8350k firmware -

intel pentium g5400 firmware -

intel pentium g5400t firmware -

intel pentium g5420 firmware -

intel pentium g5420t firmware -

intel pentium g5500 firmware -

intel pentium g5500t firmware -

intel pentium g5600 firmware -

intel celeron g4900 firmware -

intel celeron g4900t firmware -

intel celeron g4920 firmware -

intel xeon e-2174g firmware -

intel xeon e-2144g firmware -

intel xeon e-2134 firmware -

intel xeon e-2124 firmware -

intel xeon e-2124g firmware -

intel xeon e-2284g firmware -

intel xeon e-2274g firmware -

intel xeon e-2254ml firmware -

intel xeon e-2254me firmware -

intel xeon e-2244g firmware -

intel xeon e-2234 firmware -

intel xeon e-2224 firmware -

intel xeon e-2224g firmware -

intel xeon e-2184g firmware -

intel core i7-8700k firmware -

intel core i5-8600k firmware -

intel core i5-8650k firmware -

intel core i7-8705g firmware -

intel core i7-8706g firmware -

intel core i7-8709g firmware -

intel core i7-8809g firmware -

intel core i5-8305g firmware -

intel core i7-7700hq firmware -

intel core i7-7820eq firmware -

intel core i7-7820hk firmware -

intel core i7-7820hq firmware -

intel core i7-7920hq firmware -

intel core i5-7300hq firmware -

intel core i5-7440eq firmware -

intel core i5-7440hq firmware -

intel core i5-7442eq firmware -

intel core i3-7100h firmware -

intel core i7-8550u firmware -

intel core i7-8650u firmware -

intel core i5-8250u firmware -

intel core i5-8350u firmware -

intel core i3-7020u firmware -

intel core i3-8130u firmware -

intel core i7-7700 firmware -

intel core i7-7700k firmware -

intel core i7-7700t firmware -

intel core i5-7400 firmware -

intel core i5-7400t firmware -

intel core i5-7500 firmware -

intel core i5-7500t firmware -

intel core i5-7600 firmware -

intel core i5-7600t firmware -

intel core i5-7600k firmware -

intel core i3-7100e firmware -

intel core i3-7101e firmware -

intel core i3-7101te firmware -

intel core i3-7102e firmware -

intel core i3-7120 firmware -

intel core i3-7120t firmware -

intel core i3-7320t firmware -

intel core i3-7340 firmware -

intel celeron g3930e firmware -

intel celeron g3930te firmware -

intel core i7-7500u firmware -

intel core i7-7510u firmware -

intel core i7-7600u firmware -

intel core i5-7200u firmware -

intel core i5-7210u firmware -

intel core i5-7300u firmware -

intel core i5-7500u firmware -

intel core i3-7007u firmware -

intel core i3-7100u firmware -

intel core i3-7110u firmware -

intel core i3-7130u firmware -

intel pentium 4415u firmware -

intel celeron 3865u firmware -

intel celeron 3965u firmware -

intel core i7-7560u firmware -

intel core i7-7567u firmware -

intel core i7-7660u firmware -

intel core i5-7260u firmware -

intel core i5-7267u firmware -

intel core i5-7287u firmware -

intel core i5-7360u firmware -

intel core i3-7167u firmware -

intel core i5-7640x firmware -

intel xeon e3-1535m firmware -

intel xeon e3-1505m firmware -

intel xeon e3-1505l firmware -

intel xeon e3-1501l firmware -

intel xeon e3-1501m firmware -

intel xeon e3-1285 firmware -

intel xeon e3-1280 firmware -

intel xeon e3-1275 firmware -

intel xeon e3-1270 firmware -

intel xeon e3-1245 firmware -

intel xeon e3-1240 firmware -

intel xeon e3-1230 firmware -

intel xeon e3-1225 firmware -

intel xeon e3-1220 firmware -

intel core i7-7y75 firmware -

intel core i5-7y54 firmware -

intel core i5-7y57 firmware -

intel core m3-7y30 firmware -

intel pentium 4410y firmware -

intel pentium 4415y firmware -

intel celeron 3965y firmware -

intel core i7-6700hq firmware -

intel core i7-6770hq firmware -

intel core i7-6820hk firmware -

intel core i7-6820hq firmware -

intel core i7-6870hq firmware -

intel core i7-6920hq firmware -

intel core i7-6970hq firmware -

intel core i5-6300hq firmware -

intel core i5-6350hq firmware -

intel core i5-6440hq firmware -

intel core i3-6100h firmware -

intel core i7-6700 firmware -

intel core i7-6700k firmware -

intel core i7-6700t firmware -

intel core i7-6700te firmware -

intel core i7-6820eq firmware -

intel core i7-6822eq firmware -

intel core i5-6400 firmware -

intel core i5-6400t firmware -

intel core i5-6440eq firmware -

intel core i5-6442eq firmware -

intel core i5-6500 firmware -

intel core i5-6500t firmware -

intel core i5-6500te firmware -

intel core i5-6600 firmware -

intel core i5-6600k firmware -

intel core i5-6600t firmware -

intel core i3-6100 firmware -

intel core i3-6100e firmware -

intel core i3-6100t firmware -

intel core i3-6100te firmware -

intel core i3-6102e firmware -

intel core i3-6120 firmware -

intel core i3-6120t firmware -

intel core i3-6300 firmware -

intel core i3-6300t firmware -

intel core i3-6320 firmware -

intel core i3-6320t firmware -

intel pentium g4400 firmware -

intel pentium g4400t firmware -

intel pentium g4400te firmware -

intel pentium g4420 firmware -

intel pentium g4420t firmware -

intel pentium g4500 firmware -

intel pentium g4500t firmware -

intel pentium g4520 firmware -

intel pentium g4520t firmware -

intel pentium g4540 firmware -

intel celeron g3900 firmware -

intel celeron g3900t firmware -

intel celeron g3900te firmware -

intel celeron g3902e firmware -

intel celeron g3920 firmware -

intel celeron g3920t firmware -

intel celeron g3940 firmware -

intel core i7-6500u firmware -

intel core i7-6510u firmware -

intel core i7-6600u firmware -

intel core i5-6200u firmware -

intel core i5-6210u firmware -

intel core i5-6300u firmware -

intel core i5-6310u firmware -

intel core i3-6100u firmware -

intel core i3-6110u firmware -

intel pentium 4405u firmware -

intel celeron 3855u firmware -

intel celeron 3955u firmware -

intel core i7-6560u firmware -

intel core i7-6567u firmware -

intel core i7-6650u firmware -

intel core i7-6660u firmware -

intel core i5-6260u firmware -

intel core i5-6267u firmware -

intel core i5-6287u firmware -

intel core i5-6360u firmware -

intel core i3-6167u firmware -

intel xeon w-2123 firmware -

intel xeon w-2125 firmware -

intel xeon w-2133 firmware -

intel xeon w-2135 firmware -

intel xeon w-2145 firmware -

intel xeon w-2155 firmware -

intel xeon w-2195 firmware -

intel xeon w-2175 firmware -

intel core i9-7980xe firmware -

intel core m7-6y75 firmware -

intel core m5-6y54 firmware -

intel core m5-6y57 firmware -

intel core m3-6y30 firmware -

intel pentium 4405y firmware -

intel xeon 8153 firmware -

intel xeon 8156 firmware -

intel xeon 8158 firmware -

intel xeon 8160 firmware -

intel xeon 8160f firmware -

intel xeon 8160m firmware -

intel xeon 8160t firmware -

intel xeon 8164 firmware -

intel xeon 8168 firmware -

intel xeon 8170 firmware -

intel xeon 8170m firmware -

intel xeon 8176 firmware -

intel xeon 8176f firmware -

intel xeon 8176m firmware -

intel xeon 8180 firmware -

intel xeon 8180m firmware -

intel xeon 5115 firmware -

intel xeon 5118 firmware -

intel xeon 5119t firmware -

intel xeon 5120 firmware -

intel xeon 5120t firmware -

intel xeon 5122 firmware -

intel xeon 6126 firmware -

intel xeon 6126f firmware -

intel xeon 6126t firmware -

intel xeon 6128 firmware -

intel xeon 6130 firmware -

intel xeon 6130f firmware -

intel xeon 6130t firmware -

intel xeon 6132 firmware -

intel xeon 6134 firmware -

intel xeon 6134m firmware -

intel xeon 6136 firmware -

intel xeon 6138 firmware -

intel xeon 6138f firmware -

intel xeon 6138t firmware -

intel xeon 6140 firmware -

intel xeon 6140m firmware -

intel xeon 6142 firmware -

intel xeon 6142f firmware -

intel xeon 6142m firmware -

intel xeon 6144 firmware -

intel xeon 6146 firmware -

intel xeon 6148 firmware -

intel xeon 6148f firmware -

intel xeon 6150 firmware -

intel xeon 6152 firmware -

intel xeon 6154 firmware -

intel xeon 4108 firmware -

intel xeon 4109t firmware -

intel xeon 4110 firmware -

intel xeon 4112 firmware -

intel xeon 4114 firmware -

intel xeon 4114t firmware -

intel xeon 4116 firmware -

intel xeon 4116t firmware -

intel xeon 3104 firmware -

intel xeon 3106 firmware -

intel core i7-8565u firmware -

intel core i5-8265u firmware -

intel core i3-8145u firmware -

intel core i4205u firmware -

intel core i5405u firmware -

intel core i7-8665u firmware -

intel core i5-8365u firmware -

opensuse leap 15.1

debian debian linux 8.0

debian debian linux 10.0

debian debian linux 11.0

canonical ubuntu linux 18.04

canonical ubuntu linux 14.04

canonical ubuntu linux 19.10

canonical ubuntu linux 20.04

canonical ubuntu linux 16.04

fedoraproject fedora 31

fedoraproject fedora 32

Vendor Advisories

USN-4385-1 introduced a regression in the Intel Microcode for some processors ...
Several security issues were fixed in Intel Microcode ...
This update ships updated CPU microcode for some types of Intel CPUs and provides mitigations for the Special Register Buffer Data Sampling (CVE-2020-0543), Vector Register Sampling (CVE-2020-0548) and L1D Eviction Sampling (CVE-2020-0549) hardware vulnerabilities The microcode update for HEDT and Xeon CPUs with signature 0x50654 which was reverte ...
A new domain bypass transient execution attack known as Special Register Buffer Data Sampling (SRBDS) has been found This flaw allows data values from special internal registers to be leaked by an attacker able to execute code on any core of the CPU An unprivileged, local attacker can use this flaw to infer values returned by affected instruction ...
A new domain bypass transient execution attack known as Special Register Buffer Data Sampling (SRBDS) has been found This flaw allows data values from special internal registers to be leaked by an attacker able to execute code on any core of the CPU An unprivileged, local attacker can use this flaw to infer values returned by affected instruction ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic Updated microcode_ctl packages that fix several security bugs and add various enhancements are now availableRed Hat Product Security has rated this update as having a security impact of ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic Updated microcode_ctl packages that fix several security bugs and add variousenhancements are now availableRed Hat Product Security has rated this update as having a security impact ofM ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic Updated microcode_ctl packages that fix several security bugs and add variousenhancements are now availableRed Hat Product Security has rated this update as having a security impact ofM ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic An update for microcode_ctl is now available for Red at Enterprise Linux 77 Extended Update SupportRed Hat Product Security has rated this update as having a security impact of Moderat ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic An update for microcode_ctl is now available for Red Hat Enterprise Linux 80 Update Services for SAP SolutionsRed Hat Product Security has rated this update as having a security impact ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic Updated microcode_ctl packages that fix several security bugs and add variousenhancements are now availableRed Hat Product Security has rated this update as having a security impact ofM ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic Updated microcode_ctl packages that fix several security bugs and add variousenhancements are now availableRed Hat Product Security has rated this update as having a security impact ofM ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic An update for microcode_ctl is now available for Red Hat Enterprise Linux 76 Extended Update SupportRed Hat Product Security has rated this update as having a security impact of Modera ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic Updated microcode_ctl packages that fix several security bugs and add various enhancements are now availableRed Hat Product Security has rated this update as having a security impact of ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic An update for microcode_ctl is now available for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic An update for microcode_ctl is now available for Red Hat enterprise Linux 81 Extended Update SupportRed Hat Product Security has rated this update as having a security impact of Modera ...
Synopsis Moderate: microcode_ctl security, bug fix and enhancement update Type/Severity Security Advisory: Moderate Topic An update for microcode_ctl is now available for Red Hat Enterprise Linux 74 Advances Update SupportRed Hat Product Security has rated this update as having a security impact of Modera ...
A microarchitectural timing flaw was found on some Intel processors A corner case exists where data in-flight during the eviction process can end up in the “fill buffers” and not properly cleared by the MDS mitigations The fill buffer contents (which were expected to be blank) can be inferred using MDS or TAA style attack methods to allow a l ...
Intel has informed HP of a potential security vulnerability involving cleanup errors in some data cache evictions in some Intel® Processors that may allow an authenticated user to potentially enable information disclosure via local access ...
Intel has informed HP of a potential security vulnerability involving cleanup errors in some data cache evictions in some Intel® Processors that may allow an authenticated user to potentially enable information disclosure via local access ...

Github Repositories

Small python script to get CVSSv3 scores from the NIST NVD (National Vulnerability Database)

get-nist-details Small python script to get CVSSv3 scores from the NIST NVD (National Vulnerability Database) using their REST API Note: requires python3 to run Usage: getNISTDetailspy [-h] [-c [CVES [CVES ]]] -h, --help show this help message and exit -c [CVES [CVES ]], --cves [CVES [CVES ]] List of CVEs to look up Can be sp

Recent Articles

Cache flow problems continue for Intel: Yet more data-leaking processor design blunders discovered, patches due soon
The Register • Thomas Claburn in San Francisco • 28 Jan 2020

Cache(me)Out(side), how 'bout dat? Buffer the Intel flayer: Chipzilla, Microsoft, Linux world, etc emit fixes for yet more data-leaking processor flaws

Intel on Monday issued a processor data leakage advisory, describing two chip architecture flaws, one of which it tried to fix twice before. The memo, INTEL-SA-00329, covers two security vulnerabilities: CVE-2020-0548, dubbed Vector Register Sampling, and rated 2.8 low severity, and CVE-2020-0549, described as L1D Eviction Sampling (L1Des) Leakage, and rated 6.5 medium severity. The flaws allow the potential disclosure of privileged information, which is of particular concern in multi-tenant clo...