CVE-2019-18660

Description

The Linux kernel before 5.4.1 on powerpc allows Information Exposure because the Spectre-RSB mitigation is not in place for all applicable CPUs, aka CID-39e72bf96f58. This is related to arch/powerpc/kernel/entry_64.S and arch/powerpc/kernel/security.c.

Risk Information

Base Score
4.7
MODERATE
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.029

Associated Vulnerability

VulnerabilityOS Platform
SUSE-SU-2019:3316-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-4.12.14-6.34.1.x86_64.rpmLinux
SUSE-SU-2019:3316-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-base-4.12.14-6.34.1.x86_64.rpmLinux
SUSE-SU-2019:3316-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-base-debuginfo-4.12.14-6.34.1.x86_64.rpmLinux
SUSE-SU-2019:3316-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-debuginfo-4.12.14-6.34.1.x86_64.rpmLinux
SUSE-SU-2019:3316-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-debugsource-4.12.14-6.34.1.x86_64.rpmLinux
SUSE-SU-2019:3316-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-devel-4.12.14-6.34.1.x86_64.rpmLinux
SUSE-SU-2019:3316-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-devel-azure-4.12.14-6.34.1.noarch.rpmLinux
SUSE-SU-2019:3316-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-source-azure-4.12.14-6.34.1.noarch.rpmLinux
SUSE-SU-2019:3316-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-syms-azure-4.12.14-6.34.1.x86_64.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-4.12.14-95.45.1.x86_64.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-debuginfo-4.12.14-95.45.1.x86_64.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-debugsource-4.12.14-95.45.1.x86_64.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-devel-4.12.14-95.45.1.x86_64.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-devel-debuginfo-4.12.14-95.45.1.x86_64.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-extra-4.12.14-95.45.1.x86_64.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-extra-debuginfo-4.12.14-95.45.1.x86_64.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-devel-4.12.14-95.45.1.noarch.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-macros-4.12.14-95.45.1.noarch.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-source-4.12.14-95.45.1.noarch.rpmLinux
SUSE-SU-2019:3371-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-syms-4.12.14-95.45.1.x86_64.rpmLinux
Linux kernel (USN-4225-1) linux-image-aws_5.3.0.1009.11_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-gcp_5.3.0.1011.12_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-gke_5.3.0.1011.12_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-kvm_5.3.0.1009.11_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-azure_5.3.0.1009.27_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-oracle_5.3.0.1008.9_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-generic_5.3.0.26.30_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-virtual_5.3.0.26.30_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-gcp-edge_5.3.0.1010.10_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-azure-edge_5.3.0.1009.9_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-lowlatency_5.3.0.26.30_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-5.3.0-1009-aws_5.3.0-1009.10_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-5.3.0-1009-kvm_5.3.0-1009.10_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-5.3.0-1010-gcp_5.3.0-1010.11~18.04.1_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-5.3.0-1011-gcp_5.3.0-1011.12_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-5.3.0-1009-azure_5.3.0-1009.10_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-5.3.0-1009-azure_5.3.0-1009.10~18.04.1_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-5.3.0-26-generic_5.3.0-26.28_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-5.3.0-1008-oracle_5.3.0-1008.9_amd64.debLinux
Linux kernel (USN-4225-1) linux-image-5.3.0-26-lowlatency_5.3.0-26.28_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-aws_5.0.0.1023.25_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-gcp_5.0.0.1028.53_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-gke_5.0.0.1028.53_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-kvm_5.0.0.1024.25_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-azure_5.0.0.1028.28_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-azure_5.0.0.1028.39_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-oracle_5.0.0.1009.35_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-generic_5.0.0.38.40_i386.debLinux
Linux kernel (USN-4226-1) linux-image-generic_5.0.0.38.40_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-gke-5.0_5.0.0.1027.16_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-virtual_5.0.0.38.40_i386.debLinux
Linux kernel (USN-4226-1) linux-image-virtual_5.0.0.38.40_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-aws-edge_5.0.0.1023.37_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-oem-osp1_5.0.0.1033.37_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-lowlatency_5.0.0.38.40_i386.debLinux
Linux kernel (USN-4226-1) linux-image-lowlatency_5.0.0.38.40_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-oracle-edge_5.0.0.1009.8_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-1023-aws_5.0.0-1023.26_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-1023-aws_5.0.0-1023.26~18.04.1_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-1024-kvm_5.0.0-1024.26_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-1027-gke_5.0.0-1027.28~18.04.1_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-1028-gcp_5.0.0-1028.29_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-1028-azure_5.0.0-1028.30_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-1028-azure_5.0.0-1028.30~18.04.1_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-38-generic_5.0.0-38.41_i386.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-38-generic_5.0.0-38.41_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-1009-oracle_5.0.0-1009.14_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-1009-oracle_5.0.0-1009.14~18.04.1_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-1033-oem-osp1_5.0.0-1033.38_amd64.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-38-lowlatency_5.0.0-38.41_i386.debLinux
Linux kernel (USN-4226-1) linux-image-5.0.0-38-lowlatency_5.0.0-38.41_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-aws_4.15.0.1057.58_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-gcp_4.15.0.1052.66_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-gke_4.15.0.1050.53_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-gke_4.15.0.1052.66_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-kvm_4.15.0.1052.52_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-oem_4.15.0.74.94_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-oem_4.15.0.1066.70_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-azure_4.15.0.1066.69_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-oracle_4.15.0.1031.24_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-oracle_4.15.0.1031.36_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-aws-hwe_4.15.0.1057.57_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-generic_4.15.0.74.76_i386.debLinux
Linux kernel (USN-4227-1) linux-image-generic_4.15.0.74.76_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-virtual_4.15.0.74.76_i386.debLinux
Linux kernel (USN-4227-1) linux-image-virtual_4.15.0.74.76_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-gke-4.15_4.15.0.1050.53_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-azure-edge_4.15.0.1066.69_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-lowlatency_4.15.0.74.76_i386.debLinux
Linux kernel (USN-4227-1) linux-image-lowlatency_4.15.0.74.76_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-aws-lts-18.04_4.15.0.1057.58_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-1050-gke_4.15.0-1050.53_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-1052-gcp_4.15.0-1052.56_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-1052-kvm_4.15.0-1052.52_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-1057-aws_4.15.0-1057.59_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-1057-aws_4.15.0-1057.59~16.04.1_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-1066-oem_4.15.0-1066.76_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-oracle-lts-18.04_4.15.0.1031.36_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-1066-azure_4.15.0-1066.71_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-74-generic_4.15.0-74.84_i386.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-74-generic_4.15.0-74.84_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-74-generic_4.15.0-74.83~16.04.1_i386.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-74-generic_4.15.0-74.83~16.04.1_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-generic-hwe-16.04_4.15.0.74.94_i386.debLinux
Linux kernel (USN-4227-1) linux-image-generic-hwe-16.04_4.15.0.74.94_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-virtual-hwe-16.04_4.15.0.74.94_i386.debLinux
Linux kernel (USN-4227-1) linux-image-virtual-hwe-16.04_4.15.0.74.94_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-1031-oracle_4.15.0-1031.34_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-1031-oracle_4.15.0-1031.34~16.04.1_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-74-lowlatency_4.15.0-74.84_i386.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-74-lowlatency_4.15.0-74.84_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-74-lowlatency_4.15.0-74.83~16.04.1_i386.debLinux
Linux kernel (USN-4227-1) linux-image-4.15.0-74-lowlatency_4.15.0-74.83~16.04.1_amd64.debLinux
Linux kernel (USN-4227-1) linux-image-lowlatency-hwe-16.04_4.15.0.74.94_i386.debLinux
Linux kernel (USN-4227-1) linux-image-lowlatency-hwe-16.04_4.15.0.74.94_amd64.debLinux
SUSE-SU-2020:0093-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-4.12.14-16.7.1.x86_64.rpmLinux
SUSE-SU-2020:0093-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-4.12.14-16.7.1.x86_64.rpmLinux
Linux hardware enablement (HWE) kernel (USN-4225-2) linux-image-5.3.0-26-generic_5.3.0-26.28~18.04.1_i386.debLinux
Linux hardware enablement (HWE) kernel (USN-4225-2) linux-image-5.3.0-26-generic_5.3.0-26.28~18.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-4225-2) linux-image-generic-hwe-18.04_5.3.0.26.95_i386.debLinux
Linux hardware enablement (HWE) kernel (USN-4225-2) linux-image-generic-hwe-18.04_5.3.0.26.95_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-4225-2) linux-image-virtual-hwe-18.04_5.3.0.26.95_i386.debLinux
Linux hardware enablement (HWE) kernel (USN-4225-2) linux-image-virtual-hwe-18.04_5.3.0.26.95_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-4225-2) linux-image-5.3.0-26-lowlatency_5.3.0-26.28~18.04.1_i386.debLinux
Linux hardware enablement (HWE) kernel (USN-4225-2) linux-image-5.3.0-26-lowlatency_5.3.0-26.28~18.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-4225-2) linux-image-lowlatency-hwe-18.04_5.3.0.26.95_i386.debLinux
Linux hardware enablement (HWE) kernel (USN-4225-2) linux-image-lowlatency-hwe-18.04_5.3.0.26.95_amd64.debLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update bpftool-3.10.0-1127.el7.x86_64.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update kernel-3.10.0-1127.el7.x86_64.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update kernel-abi-whitelists-3.10.0-1127.el7.noarch.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update kernel-debug-3.10.0-1127.el7.x86_64.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update kernel-debug-devel-3.10.0-1127.el7.x86_64.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update kernel-devel-3.10.0-1127.el7.x86_64.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update kernel-doc-3.10.0-1127.el7.noarch.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update kernel-headers-3.10.0-1127.el7.x86_64.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update kernel-tools-3.10.0-1127.el7.x86_64.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update kernel-tools-libs-3.10.0-1127.el7.x86_64.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update kernel-tools-libs-devel-3.10.0-1127.el7.x86_64.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update perf-3.10.0-1127.el7.x86_64.rpmLinux
(RHSA-2020:1016) kernel security, bug fix, and enhancement update python-perf-3.10.0-1127.el7.x86_64.rpmLinux
SUSE-SU-2020:14354-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-default-extra-3.0.101-108.111.1.i586.rpmLinux
SUSE-SU-2020:14354-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-default-extra-3.0.101-108.111.1.x86_64.rpmLinux
SUSE-SU-2020:14354-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-pae-extra-3.0.101-108.111.1.i586.rpmLinux
SUSE-SU-2020:14354-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-trace-extra-3.0.101-108.111.1.x86_64.rpmLinux
SUSE-SU-2020:14354-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-xen-extra-3.0.101-108.111.1.i586.rpmLinux
SUSE-SU-2020:14354-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-xen-extra-3.0.101-108.111.1.x86_64.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-2.6.32-754.31.1.el6.i686.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-2.6.32-754.31.1.el6.x86_64.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-abi-whitelists-2.6.32-754.31.1.el6.noarch.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-debug-2.6.32-754.31.1.el6.i686.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-debug-2.6.32-754.31.1.el6.x86_64.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-debug-devel-2.6.32-754.31.1.el6.i686.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-debug-devel-2.6.32-754.31.1.el6.x86_64.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-devel-2.6.32-754.31.1.el6.i686.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-devel-2.6.32-754.31.1.el6.x86_64.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-doc-2.6.32-754.31.1.el6.noarch.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-firmware-2.6.32-754.31.1.el6.noarch.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-headers-2.6.32-754.31.1.el6.i686.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update kernel-headers-2.6.32-754.31.1.el6.x86_64.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update perf-2.6.32-754.31.1.el6.i686.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update perf-2.6.32-754.31.1.el6.x86_64.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update python-perf-2.6.32-754.31.1.el6.i686.rpmLinux
(RHSA-2020:2933) kernel security and bug fix update python-perf-2.6.32-754.31.1.el6.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update bpftool-3.10.0-1127.el7.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update kernel-3.10.0-1127.el7.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update kernel-debug-3.10.0-1127.el7.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update kernel-debug-devel-3.10.0-1127.el7.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update kernel-devel-3.10.0-1127.el7.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update kernel-headers-3.10.0-1127.el7.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update kernel-tools-3.10.0-1127.el7.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update kernel-tools-libs-3.10.0-1127.el7.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update kernel-tools-libs-devel-3.10.0-1127.el7.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update perf-3.10.0-1127.el7.x86_64.rpmLinux
(CESA-2020:1016) kernel security, bug fix, and enhancement update python-perf-3.10.0-1127.el7.x86_64.rpmLinux
Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-18660)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234