QID 43884

Date Published: 2021-10-26

QID 43884: Huawei Router Side-channel Central Processing Unit (CPU) hardware Vulnerability (Huawei-SA-20180615-01-cpu-en)

Intel publicly disclosed new variants of the side-channel central processing unit (CPU) hardware vulnerabilities known as Spectre and Meltdown. These variants known as 3A CVE-2018-3640and 4 CVE-2018-3639, local attackers may exploit these vulnerabilities to cause information leak on the affected system. (Vulnerability ID: HWPSIRT-2018-05139 and HWPSIRT-2018-05140)

Local attackers may exploit these vulnerabilities to cause information leak on the affected system.

  • CVSS V3 rated as Medium - 5.6 severity.
  • CVSS V2 rated as Medium - 4.7 severity.
  • Solution
    Refer to Huawei security advisory huawei-sa-20180615-01-cpu-en for updates and patch information.
    Vendor References

    CVEs related to QID 43884

    Software Advisories
    Advisory ID Software Component Link
    huawei-sa-20180615-01-cpu-en URL Logo www.huawei.com/en/psirt/security-advisories/huawei-sa-20180615-01-cpu-en