Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2018-3646

25
FAUCET Score

CVE-2018-3646 is a speculative execution vulnerability affecting Intel Core and Xeon microprocessors, allowing unauthorized disclosure of L1 data cache information. An attacker with local guest OS privileges can exploit this via a terminal page fault and side-channel analysis. With a CVSS score of 5.6 (MEDIUM), it requires high attack complexity but can lead to significant data confidentiality compromise. While there is no known active exploitation or public exploit code, the vulnerability has garnered substantial community discussion and media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
330eCPE matchmatch criteria
cpe:2.3:h:intel:core_i3:330e:*:*:*:*:*:*:*
330mCPE matchmatch criteria
cpe:2.3:h:intel:core_i3:330m:*:*:*:*:*:*:*
330umCPE matchmatch criteria
cpe:2.3:h:intel:core_i3:330um:*:*:*:*:*:*:*
350mCPE matchmatch criteria
cpe:2.3:h:intel:core_i3:350m:*:*:*:*:*:*:*
370mCPE matchmatch criteria
cpe:2.3:h:intel:core_i3:370m:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

5.6MEDIUM

CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N

Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
NONE
Availability Impact
NONE
Exploitability Score
1.1
Impact Score
4.0
CvssVersion
3.0

Exploit Intelligence

EPSS Score
8.10%
Probability of exploitation in next 30 days
EPSS Percentile
94.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
This CVE's current EPSS score of 0.0810 is in the 99th percentile among its peer group of 1,296 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.4 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (23)

feathersjspatch availablevia llm_extracted
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5 Extended Lifecycle SupportFixed in: kernel-0:2.6.18-434.el5
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: kernel-0:2.6.32-754.3.5.el6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6.4 Advanced Update SupportFixed in: kernel-0:2.6.32-358.91.4.el6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6.5 Advanced Update SupportFixed in: kernel-0:2.6.32-431.91.3.el6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6.6 Advanced Update SupportFixed in: kernel-0:2.6.32-504.72.4.el6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6.6 Telco Extended Update SupportFixed in: kernel-0:2.6.32-504.72.4.el6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6.7 Extended Update SupportFixed in: kernel-0:2.6.32-573.60.4.el6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-rt-0:3.10.0-862.11.6.rt56.819.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-0:3.10.0-862.11.6.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.2 Advanced Update SupportFixed in: kernel-0:3.10.0-327.71.4.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5.9 Long LifeFixed in: kernel-0:2.6.18-348.41.1.el5
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.2 Update Services for SAP SolutionsFixed in: kernel-0:3.10.0-327.71.4.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.3 Extended Update SupportFixed in: kernel-0:3.10.0-514.55.4.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.4 Extended Update SupportFixed in: kernel-0:3.10.0-693.37.4.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise MRG 2Fixed in: kernel-rt-1:3.10.0-693.37.4.rt56.629.el6rt
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Virtualization 4 for Red Hat Enterprise Linux 7Fixed in: rhvm-appliance-0:4.2-20180813.0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Virtualization 4 for Red Hat Enterprise Linux 7Fixed in: redhat-release-virtualization-host-0:4.2-5.2.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Virtualization 4 for Red Hat Enterprise Linux 7Fixed in: redhat-virtualization-host-0:4.2-20180813.0
View patch
redhatpatch availablevia redhat_api
Product: RHEV 3.X Hypervisor and Agents for RHEL-6Fixed in: rhev-hypervisor7-0:7.3-20180813.0.el6ev
View patch
redhatpatch availablevia redhat_api
Product: RHEV 3.X Hypervisor and Agents for RHEL-7 ELSFixed in: rhev-hypervisor7-0:7.3-20180813.0.el7ev
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.2 Telco Extended Update SupportFixed in: kernel-0:3.10.0-327.71.4.el7
View patch
sophospatch availablevia llm_extracted
View patch

Vendor Advisories (3)

sophosllm-sophos-477ef0418fb31d92HIGH

Security vulnerability in specific Intel CPUs (L1TF)

Aug 11, 2025
redhatCVE-2018-3646Important

Kernel: hw: cpu: L1 terminal fault (L1TF)

Aug 14, 2018
feathersjsllm-feathersjs-057e231ed784a290HIGH

Intel CPU L1TF vulnerability (CVE-2018-3646)

References

access.redhat.com / errata/RHSA-2018:2384
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2387
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2388
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2389
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2390
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2391
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2392
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2393
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2394
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2395
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2396
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2402
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2403
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2404
Third Party Advisory
access.redhat.com / errata/RHSA-2018:2602
access.redhat.com / errata/RHSA-2018:2603
cert-portal.siemens.com / productcert/pdf/ssa-254686.pdf
cert-portal.siemens.com / productcert/pdf/ssa-608355.pdf
foreshadowattack.eu
Technical DescriptionThird Party Advisory
help.ecostruxureit.com / display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0
lists.debian.org / debian-lts-announce/2018/08/msg00029.html
lists.debian.org / debian-lts-announce/2018/09/msg00017.html
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/V4UWGORQWCENCIF2BHWUEF2ODBV75QS2
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/XRFKQWYV2H4BV75CUNGCGE5TNVQCLBGZ
portal.msrc.microsoft.com / en-US/security-guidance/advisory/ADV180018
psirt.global.sonicwall.com / vuln-detail/SNWLID-2018-0010
Third Party Advisory
security.freebsd.org / advisories/FreeBSD-SA-18:09.l1tf.asc
Third Party Advisory
security.gentoo.org / glsa/201810-06
security.netapp.com / advisory/ntap-20180815-0001
Third Party Advisory
software.intel.com / security-software-guidance/software-guidance/l1-terminal-fault
MitigationVendor Advisory
support.f5.com / csp/article/K31300402
Third Party Advisory
support.hpe.com / hpsc/doc/public/display
Third Party Advisory
tools.cisco.com / security/center/content/CiscoSecurityAdvisory/cisco-sa-20180814-cpusidechannel
Third Party Advisory
support.lenovo.com / us/en/solutions/LEN-24163
Third Party Advisory
usn.ubuntu.com / 3740-1
Third Party Advisory
usn.ubuntu.com / 3740-2
Third Party Advisory
usn.ubuntu.com / 3741-1
Third Party Advisory
usn.ubuntu.com / 3741-2
usn.ubuntu.com / 3742-1
Third Party Advisory
usn.ubuntu.com / 3742-2
Third Party Advisory
usn.ubuntu.com / 3756-1
usn.ubuntu.com / 3823-1
debian.org / security/2018/dsa-4274
debian.org / security/2018/dsa-4279
intel.com / content/www/us/en/security-center/advisory/intel-sa-00161.html
Vendor Advisory
kb.cert.org / vuls/id/982149
oracle.com / security-alerts/cpujul2020.html
oracle.com / technetwork/security-advisory/cpuapr2019-5072813.html
oracle.com / technetwork/security-advisory/cpujan2019-5072801.html
synology.com / support/security/Synology_SA_18_45
Third Party Advisory
huawei.com / en/psirt/security-advisories/huawei-sa-20180815-01-cpu-en
Third Party Advisory
securityfocus.com / bid/105080
Third Party AdvisoryVDB Entry
securitytracker.com / id/1041451
Third Party AdvisoryVDB Entry
securitytracker.com / id/1042004
vmware.com / security/advisories/VMSA-2018-0020.html
Third Party Advisory
xenbits.xen.org / xsa/advisory-273.html
Third Party Advisory