cve/2019/CVE-2019-11135.md
2024-06-18 02:51:15 +02:00

32 lines
1.5 KiB
Markdown

### [CVE-2019-11135](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11135)
![](https://img.shields.io/static/v1?label=Product&message=2019.2%20IPU%20%E2%80%93%20TSX%20Asynchronous%20Abort&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Information%20Disclosure&color=brighgreen)
### Description
TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.
### POC
#### Reference
- http://packetstormsecurity.com/files/155375/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00270.html
- https://www.oracle.com/security-alerts/cpujan2021.html
#### Github
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Live-Hack-CVE/CVE-2019-11135
- https://github.com/amstelchen/smc_gui
- https://github.com/codexlynx/hardware-attacks-state-of-the-art
- https://github.com/edsonjt81/spectre-meltdown
- https://github.com/es0j/hyperbleed
- https://github.com/kali973/spectre-meltdown-checker
- https://github.com/kin-cho/my-spectre-meltdown-checker
- https://github.com/merlinepedra/spectre-meltdown-checker
- https://github.com/merlinepedra25/spectre-meltdown-checker
- https://github.com/savchenko/windows10
- https://github.com/simeononsecurity/Windows-Spectre-Meltdown-Mitigation-Script
- https://github.com/speed47/spectre-meltdown-checker