QID 591418

QID 591418: Siemens Foreshadow / L1 Terminal Fault Multiple Vulnerabilities (SSA-254686)

Security researchers published information on vulnerabilities known as Foreshadow and L1 Terminal Fault (L1TF). These vulnerabilities affect many modern processors from different vendors to a varying degree.

AFFECTED PRODUCTS

QID Detection Logic:
This QID checks for the Vulnerable version of Siemens-affected products using passive scanning.

Successful exploitation of this vulnerability can lead to disclosure of sensitive information.

  • CVSS V3 rated as High - 6.4 severity.
  • CVSS V2 rated as Medium - 5.4 severity.
  • Solution

    Customers are advised to refer to Siemens MITIGATIONS section SSA-254686 for affected packages and patching details.

    CVEs related to QID 591418

    Software Advisories
    Advisory ID Software Component Link
    SSA-254686 URL Logo cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf