Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
spectre-meltdown-checker — Reptar, Downfall, Zenbleed, ZombieLoad, RIDL, Fallout, Foreshadow, Spectre, Meltdown vulnerability/mitigation checker for Linux & BSD | Kitploit
Tools/GitHubGitHub/speed47/spectre-meltdown-checker
Defensive ToolsReconnaissanceVulnerability ScannersVulnerability AnalysisInformation GatheringHardware SecurityHardware & IoT SecurityLearning & Education

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
GitHub
speed47/spectre-meltdown-checker

spectre-meltdown-checker

Reptar, Downfall, Zenbleed, ZombieLoad, RIDL, Fallout, Foreshadow, Spectre, Meltdown vulnerability/mitigation checker for Linux & BSD

View Repository
3.9k471673 days agoReviewed by Kitploit
Share

Spectre & Meltdown Checker

A self-contained shell script to assess your system's resilience against the several transient execution CVEs that were published since early 2018, and give you guidance as to how to mitigate them.

CVE list

CVENameAliases
CVE-2017-5753Bounds Check BypassSpectre V1
CVE-2017-5715Branch Target InjectionSpectre V2
CVE-2017-5754Rogue Data Cache LoadMeltdown
CVE-2018-3640Rogue System Register ReadVariant 3a
CVE-2018-3639Speculative Store BypassVariant 4, SSB
CVE-2018-3615L1 Terminal FaultForeshadow (SGX)
CVE-2018-3620L1 Terminal FaultForeshadow-NG (OS/SMM)
CVE-2018-3646L1 Terminal FaultForeshadow-NG (VMM)
CVE-2018-12126Microarchitectural Store Buffer Data SamplingMSBDS, Fallout
CVE-2018-12127Microarchitectural Load Port Data SamplingMLPDS, RIDL
CVE-2018-12130Microarchitectural Fill Buffer Data SamplingMFBDS, ZombieLoad
CVE-2018-12207Machine Check Exception on Page Size ChangesiTLB Multihit, No eXcuses
CVE-2019-11091Microarchitectural Data Sampling Uncacheable MemoryMDSUM, RIDL
CVE-2019-11135TSX Asynchronous AbortTAA, ZombieLoad V2
CVE-2020-0543Special Register Buffer Data SamplingSRBDS, CROSSTalk
CVE-2022-21123Shared Buffers Data ReadSBDR, MMIO Stale Data
CVE-2022-21125Shared Buffers Data SamplingSBDS, MMIO Stale Data
CVE-2022-21166Device Register Partial WriteDRPW, MMIO Stale Data
CVE-2022-29900Arbitrary Speculative Code Execution with Return InstructionsRetbleed (AMD)
CVE-2022-29901Arbitrary Speculative Code Execution with Return InstructionsRetbleed (Intel), RSBA
CVE-2022-40982Gather Data SamplingDownfall, GDS
CVE-2023-20569Return Address SecurityInception, SRSO
CVE-2023-20588AMD Division by Zero Speculative Data LeakDIV0
CVE-2023-20593Cross-Process Information LeakZenbleed
CVE-2023-23583Redundant Prefix IssueReptar
CVE-2023-28746Register File Data SamplingRFDS
CVE-2024-28956Indirect Target SelectionITS
CVE-2024-36350Transient Scheduler Attack, Store QueueTSA-SQ
CVE-2024-36357Transient Scheduler Attack, L1TSA-L1
CVE-2025-40300VM-Exit Stale Branch PredictionVMScape
CVE-2024-45332Branch Privilege InjectionBPI
CVE-2025-54505AMD Zen1 Floating-Point Divider Stale Data LeakFPDSS

The following entries are ARM64 silicon errata that the kernel actively works around. They have no assigned CVE; they are tracked only by ARM's erratum numbers. Select them with --errata <number> or the associated --variant mnemonic.

IDNameAffected cores
CVE-0001-0001Speculative AT TLB corruption (errata 1165522, 1319367, 1319537, 1530923)Cortex-A55/A57/A72/A76
CVE-0001-0002Speculative unprivileged load (errata 2966298, 3117295)Cortex-A510/A520
CVE-0001-0003MSR SSBS not self-synchronizing (erratum 3194386 + siblings)Cortex-A76/A77/A78/A78C/A710/A715/A720/A720AE/A725, X1/X1C/X2/X3/X4/X925, Neoverse-N1/N2/N3/V1/V2/V3/V3AE

Am I at risk?

Depending on your situation, the table below answers whether an attacker in a given position can extract data from a given target. The "Userland → Kernel" column also applies within a VM (VM userland vs. VM kernel), since the same CPU mechanisms are at play regardless of virtualization.

Download Tool