Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.html
https://usn.ubuntu.com/4385-1/
https://usn.ubuntu.com/4388-1/
http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00025.html
https://usn.ubuntu.com/4392-1/
https://usn.ubuntu.com/4393-1/
https://usn.ubuntu.com/4389-1/
https://usn.ubuntu.com/4387-1/
https://usn.ubuntu.com/4390-1/
https://usn.ubuntu.com/4391-1/
http://www.openwall.com/lists/oss-security/2020/07/14/5
http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00024.html
http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00031.html
https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf
https://kc.mcafee.com/corporate/index?page=content&id=SB10318
Source: MITRE
Published: 2020-06-15
Updated: 2022-04-28
Type: CWE-459
Base Score: 2.1
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N
Impact Score: 2.9
Exploitability Score: 3.9
Severity: LOW
Base Score: 5.5
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Impact Score: 3.6
Exploitability Score: 1.8
Severity: MEDIUM