Front Page: NCSC-FI
Front Page: NCSC-FI
Menu

Meltdown and Spectre exploit vulnerabilities in processors

Vulnerability1/2018

Meltdown and Spectre are attacks that exploit speculative execution, the way processors predict commands. Meltdown and Spectre exploit the way speculatively executed instructions can bypass process memory protection. These vulnerabilities are particularly harmful to multi-user server environments, giving malicious users access to users’ confidential information.

For all the latest updates, please see the Finnish-language website.

Target

  • Workstations and end-user applications
  • Servers and server applications

Attack vector

  • Remote
  • Locally

Impact

  • Security bypass
  • Obtaining of confidential information

Remediation

  • Software update patch
  • Restriction of the problem
  • No update

Originally published 04.01.2018 time 11:45