CVE-2017-5754

ENISA EUVD: EUVD-2017-14831 ↗
✓ Confirmed 0-Day
Triaged: March 5, 2026 6 articles Published: 2018-01-04

EPSS Score

Source: FIRST.org · 2026-05-24
89.59%
probability
This CVE has a 89.59% probability of being exploited in the next 30 days.
0% Top 99.6th percentile of all CVEs 100%
CVSS score unavailable
Neither CIRCL nor NVD returned a CVSS score for this CVE. View on VulnerabilityLookup ↗

Description

VulnerabilityLookup (CNA)
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis of the data cache.

Affected Products

Intel Corporation
Most Modern Operating Systems
All

Attack Intelligence

Exploits & PoC

ionescu007/SpecuCheck

SpecuCheck is a Windows utility for checking the state of the software mitigations and hardware against CVE-2017-5754 (Meltdown), CVE-2017-5715 (Spec

583
Viralmaniar/In-Spectre-Meltdown

This tool allows to check speculative execution side-channel attacks that affect many modern processors and operating systems designs. CVE-2017-5754 (

94
jdmulloy/meltdown-aws-scanner

Naive shell script to verify Meltdown (CVE-2017-5754) patch status of EC2 instances

1
3 repos — triés par ⭐ Rechercher sur GitHub ↗

Signal Intelligence

Confidence
95%
EPSS 89.59%
Mentions 6
Last Seen Feb 25, 2025

CNA Information

CNA Assigner
intel

Analyst Note

CVE-2017-5754 is Meltdown, a critical speculative execution vulnerability discovered by Project Zero researchers and disclosed January 3-4, 2018. Exploitation in the wild occurred simultaneously with patch availability across all major OS vendors on Patch Tuesday 2018-01-09. This is a canonical zero-day case despite the medium CVSS (which reflects local-access-only requirement, not severity).

Triage Info

Decided atMar 05, 2026
Published DateJan 04, 2018