CVE-2018-5407
MEDIUMCVSS 4.7/10EPSS 3.42%
Last modified
CVE-2018-5407 is a medium-severity vulnerability rated 4.7/10 on the CVSS scale. Simultaneous Multi-threading (SMT) in processors can enable local users to exploit software vulnerable to timing attacks via a side-channel timing attack on 'port contention'.. EPSS estimates a 3.42% chance of exploitation in the next 30 days.
Description
Simultaneous Multi-threading (SMT) in processors can enable local users to exploit software vulnerable to timing attacks via a side-channel timing attack on 'port contention'.
Metrics
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Canonical | Ubuntu Linux | 14.04 |
| Canonical | Ubuntu Linux | 16.04 |
| Canonical | Ubuntu Linux | 18.04 |
| Canonical | Ubuntu Linux | 18.10 |
| Debian | Debian Linux | 8.0 |
| Debian | Debian Linux | 9.0 |
| Nodejs | Node.Js | < 6.14.4 |
| Nodejs | Node.Js | >= 8.0.0, < 8.11.4 |
| Nodejs | Node.Js | >= 10.0.0, < 10.9.0 |
| Openssl | Openssl | >= 1.0.2, < 1.0.2q |
| Openssl | Openssl | >= 1.1.0, < 1.1.0i |
| Tenable | Nessus | < 8.1.1 |
| Oracle | Api Gateway | 11.1.2.4.0 |
| Oracle | Application Server | 0.9.8 |
| Oracle | Application Server | 1.0.0 |
| Oracle | Application Server | 1.0.1 |
| Oracle | Enterprise Manager Base Platform | 12.1.0.5.0 |
| Oracle | Enterprise Manager Base Platform | 13.2.0.0.0 |
| Oracle | Enterprise Manager Base Platform | 13.3.0.0.0 |
| Oracle | Enterprise Manager Ops Center | 12.3.3 |
| Oracle | Mysql Enterprise Backup | <= 3.12.3 |
| Oracle | Mysql Enterprise Backup | >= 3.12.4, <= 4.1.2 |
| Oracle | Peoplesoft Enterprise Peopletools | 8.55 |
| Oracle | Peoplesoft Enterprise Peopletools | 8.56 |
| Oracle | Peoplesoft Enterprise Peopletools | 8.57 |
| Oracle | Primavera P6 Enterprise Project Portfolio Management | >= 17.7, <= 17.12 |
| Oracle | Primavera P6 Enterprise Project Portfolio Management | 8.4 |
| Oracle | Primavera P6 Enterprise Project Portfolio Management | 15.1 |
| Oracle | Primavera P6 Enterprise Project Portfolio Management | 15.2 |
| Oracle | Primavera P6 Enterprise Project Portfolio Management | 16.1 |
| Oracle | Primavera P6 Enterprise Project Portfolio Management | 16.2 |
| Oracle | Primavera P6 Enterprise Project Portfolio Management | 18.8 |
| Oracle | Tuxedo | 12.1.1.0.0 |
| Oracle | Vm Virtualbox | < 6.0.0 |
| Redhat | Enterprise Linux Desktop | 7.0 |
| Redhat | Enterprise Linux Server | 7.0 |
| Redhat | Enterprise Linux Server | 7.6 |
| Redhat | Enterprise Linux Server Aus | 7.6 |
| Redhat | Enterprise Linux Server Eus | 7.6 |
| Redhat | Enterprise Linux Server Tus | 7.6 |
| Redhat | Enterprise Linux Workstation | 7.0 |
References
- http://www.securityfocus.com/bid/105897Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2019:0483Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0651Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0652Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:2125Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:3929Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:3931Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:3932Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:3933Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:3935Third Party Advisory
- https://eprint.iacr.org/2018/1060.pdfTechnical Description, Third Party Advisory
- https://github.com/bbbrumley/portsmashExploit, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/11/msg00024.htmlMailing List, Third Party Advisory
- https://nodejs.org/en/blog/vulnerability/november-2018-security-releases/Third Party Advisory
- https://security.gentoo.org/glsa/201903-10Third Party Advisory
- https://security.netapp.com/advisory/ntap-20181126-0001/Third Party Advisory
- https://usn.ubuntu.com/3840-1/Third Party Advisory
- https://www.debian.org/security/2018/dsa-4348Third Party Advisory
- https://www.debian.org/security/2018/dsa-4355Third Party Advisory
- https://www.exploit-db.com/exploits/45785/Exploit, Third Party Advisory, VDB Entry
- https://www.oracle.com/security-alerts/cpuapr2020.htmlPatch, Third Party Advisory
- https://www.oracle.com/security-alerts/cpujan2020.htmlPatch, Third Party Advisory
- https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.htmlPatch, Third Party Advisory
- https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.htmlPatch, Vendor Advisory
- https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.htmlPatch, Third Party Advisory
- https://www.tenable.com/security/tns-2018-16Third Party Advisory
- https://www.tenable.com/security/tns-2018-17Third Party Advisory
- http://www.securityfocus.com/bid/105897Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2019:0483Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0651Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0652Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:2125Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:3929Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:3931Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:3932Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:3933Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:3935Third Party Advisory
- https://eprint.iacr.org/2018/1060.pdfTechnical Description, Third Party Advisory
- https://github.com/bbbrumley/portsmashExploit, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/11/msg00024.htmlMailing List, Third Party Advisory
- https://nodejs.org/en/blog/vulnerability/november-2018-security-releases/Third Party Advisory
- https://security.gentoo.org/glsa/201903-10Third Party Advisory
- https://security.netapp.com/advisory/ntap-20181126-0001/Third Party Advisory
- https://usn.ubuntu.com/3840-1/Third Party Advisory
- https://www.debian.org/security/2018/dsa-4348Third Party Advisory
- https://www.debian.org/security/2018/dsa-4355Third Party Advisory
- https://www.exploit-db.com/exploits/45785/Exploit, Third Party Advisory, VDB Entry
- https://www.oracle.com/security-alerts/cpuapr2020.htmlPatch, Third Party Advisory
- https://www.oracle.com/security-alerts/cpujan2020.htmlPatch, Third Party Advisory
- https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.htmlPatch, Third Party Advisory
- https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.htmlPatch, Vendor Advisory
- https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.htmlPatch, Third Party Advisory
- https://www.tenable.com/security/tns-2018-16Third Party Advisory
- https://www.tenable.com/security/tns-2018-17Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-5407?
Simultaneous Multi-threading (SMT) in processors can enable local users to exploit software vulnerable to timing attacks via a side-channel timing attack on 'port contention'.
How severe is CVE-2018-5407?
CVE-2018-5407 has a CVSS score of 4.7/10 (MEDIUM severity). The EPSS model estimates a 3.42% probability of exploitation in the next 30 days.
How do I fix CVE-2018-5407?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
Are you affected by CVE-2018-5407?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
