{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-17T13:59:52.814","vulnerabilities":[{"cve":{"id":"CVE-2018-5407","sourceIdentifier":"cret@cert.org","published":"2018-11-15T21:29:00.233","lastModified":"2024-11-21T04:08:45.530","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Simultaneous Multi-threading (SMT) in processors can enable local users to exploit software vulnerable to timing attacks via a side-channel timing attack on 'port contention'."},{"lang":"es","value":"SMT (Simultaneous Multi-threading) en los procesadores puede habilitar que usuarios locales exploten software vulnerable a ataques de sincronización mediante un ataques de sincronización de canal lateral en la \"contención de puertos\"."}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N","baseScore":4.7,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"HIGH","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":1.0,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:M/Au:N/C:P/I:N/A:N","baseScore":1.9,"accessVector":"LOCAL","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.4,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"cret@cert.org","type":"Secondary","description":[{"lang":"en","value":"CWE-200"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-203"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*","matchCriteriaId":"B5A6F2F3-4894-4392-8296-3B8DD2679084"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*","matchCriteriaId":"F7016A2A-8365-4F1A-89A2-7A19F2BCAE5B"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*","matchCriteriaId":"23A7C53F-B80F-4E6A-AFA9-58EEA84BE11D"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*","matchCriteriaId":"07C312A0-CD2C-4B9C-B064-6409B25C278F"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*","matchCriteriaId":"C11E6FB0-C8C0-4527-9AA0-CB9B316F8F43"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*","matchCriteriaId":"DEECE5FC-CACF-4496-A3E7-164736409252"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nodejs:node.js:*:*:*:*:*:*:*:*","versionEndExcluding":"6.14.4","matchCriteriaId":"4F608F84-5A94-4DC1-A7B8-E19028F96A40"},{"vulnerable":true,"criteria":"cpe:2.3:a:nodejs:node.js:*:*:*:*:*:*:*:*","versionStartIncluding":"8.0.0","versionEndExcluding":"8.11.4","matchCriteriaId":"468A9D35-95E1-473B-A5D3-9BD78818F599"},{"vulnerable":true,"criteria":"cpe:2.3:a:nodejs:node.js:*:*:*:*:*:*:*:*","versionStartIncluding":"10.0.0","versionEndExcluding":"10.9.0","matchCriteriaId":"48A01678-361E-4F23-B7D6-41B0C145F491"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:*","versionStartIncluding":"1.0.2","versionEndExcluding":"1.0.2q","matchCriteriaId":"0DF92E05-808F-4D22-BD55-3571BF46889F"},{"vulnerable":true,"criteria":"cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:*","versionStartIncluding":"1.1.0","versionEndExcluding":"1.1.0i","matchCriteriaId":"B64CB987-8B48-4B65-BC6A-B39F1F69F4B7"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tenable:nessus:*:*:*:*:*:*:*:*","versionEndExcluding":"8.1.1","matchCriteriaId":"0BB469FA-ECF9-42D8-8CF0-7C8B426FD7B2"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:api_gateway:11.1.2.4.0:*:*:*:*:*:*:*","matchCriteriaId":"A5553591-073B-45E3-999F-21B8BA2EEE22"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_server:0.9.8:*:*:*:*:*:*:*","matchCriteriaId":"BD941CDF-8486-43F7-9D98-2B8785B1B139"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_server:1.0.0:*:*:*:*:*:*:*","matchCriteriaId":"EDE18990-1FC9-4624-971B-2E87BF0871AF"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:application_server:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"17C29F2D-CBE6-4E22-98AE-787E939ED161"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:enterprise_manager_base_platform:12.1.0.5.0:*:*:*:*:*:*:*","matchCriteriaId":"98F3E643-4B65-4668-BB11-C61ED54D5A53"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:enterprise_manager_base_platform:13.2.0.0.0:*:*:*:*:*:*:*","matchCriteriaId":"459B4A5F-A6BD-4A1C-B6B7-C979F005EB70"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:enterprise_manager_base_platform:13.3.0.0.0:*:*:*:*:*:*:*","matchCriteriaId":"CDCE0E90-495E-4437-8529-3C36441FB69D"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:enterprise_manager_ops_center:12.3.3:*:*:*:*:*:*:*","matchCriteriaId":"AB654DFA-FEF9-4D00-ADB0-F3F2B6ACF13E"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql_enterprise_backup:*:*:*:*:*:*:*:*","versionEndIncluding":"3.12.3","matchCriteriaId":"D2049488-5CE2-4C56-8B0E-BA7C499A7372"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:mysql_enterprise_backup:*:*:*:*:*:*:*:*","versionStartIncluding":"3.12.4","versionEndIncluding":"4.1.2","matchCriteriaId":"81B25011-AEFA-453D-AF1E-5945AB625767"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.55:*:*:*:*:*:*:*","matchCriteriaId":"45CB30A1-B2C9-4BF5-B510-1F2F18B60C64"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.56:*:*:*:*:*:*:*","matchCriteriaId":"D0A735B4-4F3C-416B-8C08-9CB21BAD2889"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.57:*:*:*:*:*:*:*","matchCriteriaId":"7E1E416B-920B-49A0-9523-382898C2979D"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:*:*:*:*:*:*:*:*","versionStartIncluding":"17.7","versionEndIncluding":"17.12","matchCriteriaId":"7A1E1023-2EB9-4334-9B74-CA71480F71C2"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:8.4:*:*:*:*:*:*:*","matchCriteriaId":"84BF6794-2CE6-407F-B8E0-81871AB7B40B"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:15.1:*:*:*:*:*:*:*","matchCriteriaId":"93A4E178-0082-45C5-BBC0-0A4E51C8B1DE"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:15.2:*:*:*:*:*:*:*","matchCriteriaId":"3F021C23-AB9B-4877-833F-D01359A98762"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:16.1:*:*:*:*:*:*:*","matchCriteriaId":"2F8ED016-32A1-42EE-844E-3E6B2C116B74"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:16.2:*:*:*:*:*:*:*","matchCriteriaId":"A046CC2C-445F-4336-8810-930570B4FEC6"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:18.8:*:*:*:*:*:*:*","matchCriteriaId":"0745445C-EC43-4091-BA7C-5105AFCC6F1F"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:tuxedo:12.1.1.0.0:*:*:*:*:*:*:*","matchCriteriaId":"92A6A7BA-CCE6-426F-8434-7A578A245180"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:vm_virtualbox:*:*:*:*:*:*:*:*","versionEndExcluding":"6.0.0","matchCriteriaId":"B52550D1-38F6-4AAC-BE68-487F7D6DB2D8"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*","matchCriteriaId":"33C068A4-3780-4EAB-A937-6082DF847564"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*","matchCriteriaId":"51EF4996-72F4-4FA4-814F-F5991E7A8318"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_server:7.6:*:*:*:*:*:*:*","matchCriteriaId":"5E92F9B3-3841-4C05-88F0-CEB0735EA4BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*","matchCriteriaId":"B353CE99-D57C-465B-AAB0-73EF581127D1"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*","matchCriteriaId":"BF77CDCF-B9C9-427D-B2BF-36650FB2148C"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*","matchCriteriaId":"B76AA310-FEC7-497F-AF04-C3EC1E76C4CC"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*","matchCriteriaId":"825ECE2D-E232-46E0-A047-074B34DB1E97"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/105897","source":"cret@cert.org","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://access.redhat.com/errata/RHSA-2019:0483","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:0651","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:0652","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:2125","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:3929","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:3931","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:3932","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:3933","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:3935","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://eprint.iacr.org/2018/1060.pdf","source":"cret@cert.org","tags":["Technical Description","Third Party Advisory"]},{"url":"https://github.com/bbbrumley/portsmash","source":"cret@cert.org","tags":["Exploit","Third Party Advisory"]},{"url":"https://lists.debian.org/debian-lts-announce/2018/11/msg00024.html","source":"cret@cert.org","tags":["Mailing List","Third Party Advisory"]},{"url":"https://nodejs.org/en/blog/vulnerability/november-2018-security-releases/","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://security.gentoo.org/glsa/201903-10","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://security.netapp.com/advisory/ntap-20181126-0001/","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://support.f5.com/csp/article/K49711130?utm_source=f5support&amp%3Butm_medium=RSS","source":"cret@cert.org"},{"url":"https://usn.ubuntu.com/3840-1/","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://www.debian.org/security/2018/dsa-4348","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://www.debian.org/security/2018/dsa-4355","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://www.exploit-db.com/exploits/45785/","source":"cret@cert.org","tags":["Exploit","Third Party Advisory","VDB Entry"]},{"url":"https://www.oracle.com/security-alerts/cpuapr2020.html","source":"cret@cert.org","tags":["Patch","Third Party Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpujan2020.html","source":"cret@cert.org","tags":["Patch","Third Party Advisory"]},{"url":"https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html","source":"cret@cert.org","tags":["Patch","Third Party Advisory"]},{"url":"https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html","source":"cret@cert.org","tags":["Patch","Vendor Advisory"]},{"url":"https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html","source":"cret@cert.org","tags":["Patch","Third Party Advisory"]},{"url":"https://www.tenable.com/security/tns-2018-16","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"https://www.tenable.com/security/tns-2018-17","source":"cret@cert.org","tags":["Third Party Advisory"]},{"url":"http://www.securityfocus.com/bid/105897","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://access.redhat.com/errata/RHSA-2019:0483","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:0651","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:0652","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:2125","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:3929","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:3931","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:3932","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:3933","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://access.redhat.com/errata/RHSA-2019:3935","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://eprint.iacr.org/2018/1060.pdf","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Technical Description","Third Party Advisory"]},{"url":"https://github.com/bbbrumley/portsmash","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Third Party Advisory"]},{"url":"https://lists.debian.org/debian-lts-announce/2018/11/msg00024.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"]},{"url":"https://nodejs.org/en/blog/vulnerability/november-2018-security-releases/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://security.gentoo.org/glsa/201903-10","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://security.netapp.com/advisory/ntap-20181126-0001/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://support.f5.com/csp/article/K49711130?utm_source=f5support&amp%3Butm_medium=RSS","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://usn.ubuntu.com/3840-1/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://www.debian.org/security/2018/dsa-4348","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://www.debian.org/security/2018/dsa-4355","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://www.exploit-db.com/exploits/45785/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Third Party Advisory","VDB Entry"]},{"url":"https://www.oracle.com/security-alerts/cpuapr2020.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory"]},{"url":"https://www.oracle.com/security-alerts/cpujan2020.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory"]},{"url":"https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory"]},{"url":"https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory"]},{"url":"https://www.tenable.com/security/tns-2018-16","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://www.tenable.com/security/tns-2018-17","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]}]}}]}