vulnerability
Amazon Linux AMI: CVE-2019-11135: Security patch for microcode_ctl, kernel (ALAS-2019-1318)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 2 | (AV:L/AC:L/Au:N/C:P/I:N/A:N) | Nov 12, 2019 | Nov 17, 2019 | Oct 14, 2022 |
Severity
2
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:N)
Published
Nov 12, 2019
Added
Nov 17, 2019
Modified
Oct 14, 2022
Description
TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.
Solutions
amazon-linux-upgrade--kernelamazon-linux-upgrade-microcode_ctl
References
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.