CVE-2018-3665 is a medium-severity vulnerability affecting Intel Core-based microprocessors, where system software using Lazy FP state restore can allow a local process to infer data from another via a speculative execution side channel. The attack requires low privileges and high attack complexity, but can lead to high confidentiality impact. While there is no evidence of active exploitation or public exploit code, the vulnerability has garnered significant community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
330eCPE matchmatch criteria | cpe:2.3:h:intel:core_i3:330e:*:*:*:*:*:*:* | ||
330mCPE matchmatch criteria | cpe:2.3:h:intel:core_i3:330m:*:*:*:*:*:*:* | ||
330umCPE matchmatch criteria | cpe:2.3:h:intel:core_i3:330um:*:*:*:*:*:*:* | ||
350mCPE matchmatch criteria | cpe:2.3:h:intel:core_i3:350m:*:*:*:*:*:*:* | ||
370mCPE matchmatch criteria | cpe:2.3:h:intel:core_i3:370m:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.4 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.