Vulnerability record · CVE-2017-5754 · published 4 January 2018
CVE-2017-5754: Intel CPUs speculative execution side-channel information disclosure
Intel · Atom C
Intel microprocessors using speculative execution and indirect branch prediction can leak data through a side-channel analysis of the data cache. A local attacker with user access can read memory that should be inaccessible, which matters because it breaks process and kernel isolation on affected systems.
Description
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis of the data cache.
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
Automated analysis
high priorityThe flaw breaks memory isolation on a wide range of Intel CPUs and has a very high EPSS score, though it requires local access and high-complexity exploitation.
What it is
Intel microprocessors using speculative execution and indirect branch prediction can leak data through a side-channel analysis of the data cache. A local attacker with user access can read memory that should be inaccessible, which matters because it breaks process and kernel isolation on affected systems.
Impact
An attacker with local user access can disclose sensitive information from memory, potentially including kernel data or other processes' secrets. The scope change in the CVSS vector indicates the impact can cross a security boundary.
Attack surface
Reached locally by running code on the target system; no user interaction is required, but the attacker needs local user privileges. The CVSS vector is AV:L/AC:H/PR:L/UI:N, so exploitation requires local access and is rated high complexity.
Exploitation
CISA KEV does not list this CVE, but EPSS is very high at 0.84172 (99.681st percentile), indicating a high likelihood of exploitation activity. Reference tags are mostly Third Party Advisory and do not confirm in-the-wild exploitation.
What to do
- Apply vendor microcode, firmware, and OS kernel updates that implement mitigations for speculative execution side channels.
- Enable available kernel page-table isolation or equivalent mitigations in the operating system.
- Restrict local interactive access and limit untrusted code execution on affected hosts.
- Follow Intel and OS vendor guidance for the specific affected processor families listed.
- Monitor vendor advisories for updated mitigations and reapply as new guidance is released.
Detection
- Monitor for unusual local processes performing high-volume cache-timing or memory-access patterns.
- Audit and alert on unexpected local user accounts or code execution on systems with affected Intel CPUs.
- Track patch and microcode levels on affected hosts and flag systems missing speculative-execution mitigations.
- Correlate local privilege use with known side-channel proof-of-concept behavior where telemetry allows.
This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.
Affected products
150 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
Track CVE-2017-5754 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2017-5754), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.