CVE-2017-5754 affects Intel and Arm microprocessors utilizing speculative execution and indirect branch prediction, allowing local attackers to bypass memory isolation and access sensitive data via side-channel analysis. While the vulnerability carries a Medium CVSS score of 5.6 due to high attack complexity and local access requirements, it presents a critical risk to confidentiality with a FAUCET risk score of 99/100. There is currently no evidence of active exploitation in the CISA KEV or public exploit databases, yet the issue generates exceptional community discussion and media coverage due to its fundamental impact on hardware security.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
c2308CPE matchmatch criteria | cpe:2.3:h:intel:atom_c:c2308:*:*:*:*:*:*:* | ||
c2316CPE matchmatch criteria | cpe:2.3:h:intel:atom_c:c2316:*:*:*:*:*:*:* | ||
c2338CPE matchmatch criteria | cpe:2.3:h:intel:atom_c:c2338:*:*:*:*:*:*:* | ||
c2350CPE matchmatch criteria | cpe:2.3:h:intel:atom_c:c2350:*:*:*:*:*:*:* | ||
c2358CPE matchmatch criteria | cpe:2.3:h:intel:atom_c:c2358:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.4 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Processor Vulnerabilities (Spectre and Meltdown)
Apr 19, 2018NR18-03
Jan 12, 2018NR18-03
Jan 12, 2018hw: cpu: speculative execution permission faults handling
Jan 3, 2018Spectre and Meltdown CPU Vulnerabilities Affecting Underlying Operating Systems
Spectre and Meltdown CPU Vulnerabilities