View at Official debian advisory, NVD, CVE.org · CVE detail
Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.
CVE-2018-3620 not yet assigned priority: Debian including 3 source packages (intel-microcode, linux, xen), 15 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 15.
Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis.