BSA-2018-601

Brocade Fabric OS

2 more products

21642

08 May 2018

08 May 2018

Closed

Medium

6.5

No

CVE-2018-8897

Summary

Security Advisory ID : BSA-2018-601

Component : Kernel

Revision : 1.0: Final

In some circumstances, some operating systems or hypervisors may not expect or properly handle an Intel architecture hardware debug exception. The error appears to be due to developer interpretation of existing documentation for certain Intel architecture interrupt/exception instructions, namely MOV to SS and POP to SS... More details can be found in the researcher's paper.

An authenticated attacker may be able to read sensitive data in memory or control low-level operating system functions.

Affected Products

No Brocade Fibre Channel technology products from Broadcom are currently known to be affected by this vulnerability.

Note

Brocade Manageability products are not vulnerable to POP SS/MOV SS Vulnerability. However, since the environment that runs the products is not under Brocade's Control, Brocade recommends Customers to apply the recommendation from the vendors.

Revision History

Version Change Date
1.0 Initial Publication May 8, 2018