CPU.Speculative.Execution.Timing.Information.Disclosure
Description
This indicates an attack attempt to exploit an Information Disclosure vulnerability in various systems.
The vulnerability is due to how CPUs can be tricked to leak information from the kernel and other user-mode process memory. A remote attacker can exploit this to gain access to sensitive information. This signature covers for both Spectre and Meltdown vulnerability.
Affected Products
All systems that have CPUs with speculative execution and multiple levels of instruction/data cache.
Impact
Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.
Recommended Actions
See bottom of the following website for links to patches or updates from various vendors.
https://spectreattack.com/
Telemetry
Coverage
IPS (Regular DB) | |
IPS (Extended DB) |