speed47/spectre-meltdown-checker

Reptar, Downfall, Zenbleed, ZombieLoad, RIDL, Fallout, Foreshadow, Spectre, Meltdown vulnerability/mitigation checker for Linux & BSD

View on GitHub ↗Jump to charts ↓Open shareable report

Summary Information

Updated 1 hour ago
Added to GitGenius on September 17th, 2026
Created on January 7th, 2018
Open Issues & Pull Requests: 1 (+0)
GitHub issues: Enabled
Number of forks: 471
Total Stargazers: 3,951 (+0)
Total Subscribers: 155 (+0)

Repository Insights (GitGenius)

Median issue/PR response: 22.2 days
Mean response time: 501.1 days
90th percentile: 2154.5 days
Tracked items: 90

Most active contributors

Sign in to see contributor activity.

How this project is maintained

Work labelled "information" is answered fastest, typically in about 4 days, while "close-on-merge" waits about 11 months. Three people close 98% of everything that gets resolved.

Charts & Analytics

Fetching additional details & charts...

Issue Activity (beta)

Open issues: 1
New in 7 days: 0
Closed in 7 days: 0
Avg open age: 2,423 days
Stale 30+ days: 1
Stale 90+ days: 0

Recent activity

Opened in 7 days: 0
Closed in 7 days: 0
Comments in 7 days: 0
Events in 7 days: 0

Top labels

  • answered (24)
  • close-on-merge (19)
  • information (13)
  • stale (9)
  • new-vulnerability (4)
  • bug (2)
  • waiting-feedback (2)
  • cantfix (1)

Most active issues this week

Sign in to see which issues are moving.

Detailed Description

Spectre & Meltdown Checker is a shell script that assesses system resilience against transient execution CPU vulnerabilities.

The tool addresses the problem of determining whether a Linux or BSD system is vulnerable to a range of CPU-level exploits including Spectre, Meltdown, and related variants. It works by running a self-contained shell script that checks the system's current mitigations and reports on exposure to specific CVEs. The script provides guidance on how to address any identified vulnerabilities.

System administrators and security-conscious users should choose this tool when they need to understand their system's vulnerability posture against transient execution attacks. It suits any Linux or BSD deployment where CPU security is a concern, from personal machines to production servers. The tool is particularly valuable for systems that may have been deployed before these vulnerability classes were widely understood, or where mitigation status is uncertain.

The project maintains active engagement with newly discovered vulnerabilities in this class, regularly adding checks for emerging threats as they are disclosed. The codebase remains responsive to the evolving landscape of transient execution exploits, incorporating detection for variants that continue to surface.