CVE-2005-0109

Advisory lineage Upstream: 0 Downstream: 2
Modified
Published: 08 Mar 2005, 05:00
Last modified:07 Aug 2024, 20:57

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.6 MEDIUM
v3.0 (nvd)
EPSS Score
0.14% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

08 Mar 2005, 05:00
Published
Vulnerability first disclosed
07 Aug 2024, 20:57
Last Modified
Vulnerability information updated

Description

Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.

CVSS Metrics

  • v3.0MEDIUMScore: 5.6CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
  • v2.0MEDIUMScore: 4.7AV:L/AC:M/Au:N/C:C/I:N/A:N

EPSS Trends

Current EPSS score: 0.14% Percentile: 34%

Affected Systems

  • freebsdfreebsd

    1.1.5.1 | 2.0 | 2.0.5 | 2.1.0 | 2.1.5 | 2.1.6 | 2.1.6.1 | 2.1.7.1 | 2.2 | 2.2.2 | 2.2.3 | 2.2.4 | 2.2.5 | 2.2.6 | 2.2.8 | 3.0 | 3.0:releng | 3.1 | 3.2 | 3.3 | 3.4 | 3.5 | 3.5:stable | 3.5.1 | 3.5.1:release | 3.5.1:stable | 4.0 | 4.0:alpha | 4.0:releng | 4.1 | 4.1.1 | 4.1.1:release | 4.1.1:stable | 4.2 | 4.2:stable | 4.3 | 4.3:release | 4.3:release_p38 | 4.3:releng | 4.3:stable | 4.4 | 4.4:release_p42 | 4.4:releng | 4.4:stable | 4.5 | 4.5:release | 4.5:release_p32 | 4.5:releng | 4.5:stable | 4.6 | 4.6:release | 4.6:release_p20 | 4.6:releng | 4.6:stable | 4.6.2 | 4.7 | 4.7:release | 4.7:release_p17 | 4.7:releng | 4.7:stable | 4.8 | 4.8:pre-release | 4.8:release_p6 | 4.8:releng | 4.9 | 4.9:pre-release | 4.9:releng | 4.10 | 4.10:release | 4.10:release_p8 | 4.10:releng | 4.11:release_p3 | 4.11:releng | 5.0 | 5.0:alpha | 5.0:release_p14 | 5.0:releng | 5.1 | 5.1:alpha | 5.1:release | 5.1:release_p5 | 5.1:releng | 5.2 | 5.2.1:release | 5.2.1:releng | 5.3 | 5.3:release | 5.3:releng | 5.3:stable | 5.4:pre-release

  • redhatenterprise_linux

    2.1 | 3.0 | 4.0

  • redhatenterprise_linux_desktop

    3.0 | 4.0

  • redhatfedora_core

    core_3.0

  • scoopenserver

    5.0.7

  • scounixware

    7.1.3 | 7.1.3_up | 7.1.4

  • sunsolaris

    7.0 | 8.0 | 9.0 | 9.0:x86_update_2 | 10.0

  • ubuntuubuntu_linux

    4.1 | 5.04

References (18)