Skip to main content

Non-Transparent Sharing of Microarchitectural Resources

CVE-2023-40540

Severity Medium
Score 4.1/10

Summary

Non-Transparent Sharing of Microarchitectural Resources in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable information disclosure via local access.

  • HIGH
  • LOCAL
  • NONE
  • UNCHANGED
  • NONE
  • HIGH
  • HIGH
  • NONE

CWE-1303 - Non-Transparent Sharing of Microarchitectural Resources

Hardware structures shared across execution contexts (e.g., caches and branch predictors) can violate the expected architecture isolation between contexts.

References

Advisory Timeline

  • Published