You are currently reviewing an older revision of this page.

DRAFT KB-XXXX Speculative Execution Vulnerabilities

Appian is aware of widely reported security vulnerabilities that affect computer processors. This includes Meltdown (CVE-2017-5754) and Spectre (CVE-2017-5753 and CVE-2017-5715). Appian has conducted a review of our Appian Cloud systems and determined that all systems in Appian Cloud are safe from the risks of these vulnerabilities as sufficient mitigating controls are currently in place. We are working on rolling out the patches, as vendors make them available, for these vulnerabilities to all systems. As reported by the vendors, patches for these issues may have a performance impact. Performance of your Appian Cloud site may be affected by these patches when they are applied to your site.

For additional information on these issues, please see:

Google - https://googleprojectzero.blogspot.com/2018/01/reading-privileged-memory-with-side.html

Amazon Web Services - https://aws.amazon.com/security/security-bulletins/AWS-2018-013/