CWE-1342Base

Information Exposure through Microarchitectural State after Transient Execution

Incomplete in the CWE catalog · 2 CVEs mapped

2
CVEs mapped
6.5
Median CVSS
What it is

The processor does not properly clear microarchitectural state after incorrect microcode assists or speculative execution, resulting in transient execution.

Recent examples
6.5cvss
CVE-2023-28746

Information exposure through microarchitectural state after transient execution from some register files for some Intel(R) Atom(R) Processors may allow an…

Information exposure through microarchitectural state after transient execution from some register files for some Intel(R) Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

MEDIUMno explanation yet
1%
epss
6.5cvss
CVE-2022-40982

Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an…

Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

MEDIUMno explanation yet
3%
epss
The record
Technical detail
CWE ID
CWE-1342
Abstraction
Base
Structure
Simple
Status
Incomplete
References (4)