CVE-2018-3640 - Exposure of Sensitive Information to an Unauthorized Actor

Severity

47%

Complexity

34%

Confidentiality

115%

Systems with microprocessors utilizing speculative execution and that perform speculative reads of system registers may allow unauthorized disclosure of system parameters to an attacker with local user access via a side-channel analysis, aka Rogue System Register Read (RSRE), Variant 3a.

Systems with microprocessors utilizing speculative execution and that perform speculative reads of system registers may allow unauthorized disclosure of system parameters to an attacker with local user access via a side-channel analysis, aka Rogue System Register Read (RSRE), Variant 3a.

CVSS 3.0 Base Score 5.6. CVSS Attack Vector: local. CVSS Attack Complexity: high. CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N).

CVSS 2.0 Base Score 4.7. CVSS Attack Vector: local. CVSS Attack Complexity: medium. CVSS Vector: (AV:L/AC:M/Au:N/C:C/I:N/A:N).

Demo Examples

Exposure of Sensitive Information to an Unauthorized Actor

CWE-200

The following code checks validity of the supplied username and password and notifies the user of a successful or failed login.


               
}
}
print "Login Successful";
print "Login Failed - incorrect password";
print "Login Failed - unknown username";

In the above code, there are different messages for when an incorrect username is supplied, versus when the username is correct but the password is wrong. This difference enables a potential attacker to understand the state of the login function, and could allow an attacker to discover a valid username by trying different values until the incorrect password message is returned. In essence, this makes it easier for an attacker to obtain half of the necessary authentication credentials.

While this type of information may be helpful to a user, it is also useful to a potential attacker. In the above example, the message for both failed cases should be the same, such as:


               
"Login Failed - incorrect username or password"

Exposure of Sensitive Information to an Unauthorized Actor

CWE-200

This code tries to open a database connection, and prints any exceptions that occur.


               
}
openDbConnection();
//print exception message that includes exception message and configuration file location
echo 'Check credentials in config file at: ', $Mysql_config_location, '\n';

If an exception occurs, the printed message exposes the location of the configuration file the script is using. An attacker can use this information to target the configuration file (perhaps exploiting a Path Traversal weakness). If the file can be read, the attacker could gain credentials for accessing the database. The attacker may also be able to replace the file with a malicious one, causing the application to use an arbitrary database.

Exposure of Sensitive Information to an Unauthorized Actor

CWE-200

In the example below, the method getUserBankAccount retrieves a bank account object from a database using the supplied username and account number to query the database. If an SQLException is raised when querying the database, an error message is created and output to a log file.


               
}
return userAccount;
}
userAccount = (BankAccount)queryResult.getObject(accountNumber);
Logger.getLogger(BankManager.class.getName()).log(Level.SEVERE, logMessage, ex);

The error message that is created includes information about the database query that may contain sensitive information about the database or query logic. In this case, the error message will expose the table name and column names used in the database. This data could be used to simplify other attacks, such as SQL injection (CWE-89) to directly access the database.

Exposure of Sensitive Information to an Unauthorized Actor

CWE-200

This code stores location information about the current user:


               
}...
Log.e("ExampleActivity", "Caught exception: " + e + " While on User:" + User.toString());

When the application encounters an exception it will write the user object to the log. Because the user object contains location information, the user's location is also written to the log.

Exposure of Sensitive Information to an Unauthorized Actor

CWE-200

The following is an actual MySQL error statement:


               
Warning: mysql_pconnect(): Access denied for user: 'root@localhost' (Using password: N1nj4) in /usr/local/www/wi-data/includes/database.inc on line 4

The error clearly exposes the database credentials.

Exposure of Sensitive Information to an Unauthorized Actor

CWE-200

This code displays some information on a web page.


               
Social Security Number: <%= ssn %></br>Credit Card Number: <%= ccn %>

The code displays a user's credit card and social security numbers, even though they aren't absolutely necessary.

Exposure of Sensitive Information to an Unauthorized Actor

CWE-200

The following program changes its behavior based on a debug flag.


               
} %>

The code writes sensitive debug information to the client browser if the "debugEnabled" flag is set to true .

Exposure of Sensitive Information to an Unauthorized Actor

CWE-200

This code uses location to determine the user's current US State location.

First the application must declare that it requires the ACCESS_FINE_LOCATION permission in the application's manifest.xml:


               
<uses-permission android:name="android.permission.ACCESS_FINE_LOCATION"/>

During execution, a call to getLastLocation() will return a location based on the application's location permissions. In this case the application has permission for the most accurate location possible:


               
deriveStateFromCoords(userCurrLocation);

While the application needs this information, it does not need to use the ACCESS_FINE_LOCATION permission, as the ACCESS_COARSE_LOCATION permission will be sufficient to identify which US state the user is in.

Overview

First reported 6 years ago

2018-05-22 12:29:00

Last updated 4 years ago

2020-05-05 11:31:00

Affected Software

Intel Atom C C2308

c2308

Intel Atom C C3308

c3308

Intel Atom C C3338

c3338

Intel Atom C C3508

c3508

Intel Atom C C3538

c3538

Intel Atom C C3558

c3558

Intel Atom C C3708

c3708

Intel Atom C C3750

c3750

Intel Atom C C3758

c3758

Intel Atom C C3808

c3808

Intel Atom C C3830

c3830

Intel Atom C C3850

c3850

Intel Atom C C3858

c3858

Intel Atom C C3950

c3950

Intel Atom C C3955

c3955

Intel Atom C C3958

c3958

Intel Atom E E3805

e3805

Intel Atom E E3815

e3815

Intel Atom E E3825

e3825

Intel Atom E E3826

e3826

Intel Atom E E3827

e3827

Intel Atom E E3845

e3845

Intel Atom Z Z2420

z2420

Intel Atom Z Z2460

z2460

Intel Atom Z Z2480

z2480

Intel Atom Z Z2520

z2520

Intel Atom Z Z2560

z2560

Intel Atom Z Z2580

z2580

Intel Atom Z Z2760

z2760

Intel Atom Z Z3460

z3460

Intel Atom Z Z3480

z3480

Intel Atom Z Z3530

z3530

Intel Atom Z Z3560

z3560

Intel Atom Z Z3570

z3570

Intel Atom Z Z3580

z3580

Intel Atom Z Z3590

z3590

Intel Atom Z Z3735D

z3735d

Intel Atom Z Z3735E

z3735e

Intel Atom Z Z3735F

z3735f

Intel Atom Z Z3735G

z3735g

Intel Atom Z Z3736F

z3736f

Intel Atom Z Z3736G

z3736g

Intel Atom Z Z3740

z3740

Intel Atom Z Z3740D

z3740d

Intel Atom Z Z3745

z3745

Intel Atom Z Z3745D

z3745d

Intel Atom Z Z3770

z3770

Intel Atom Z Z3770D

z3770d

Intel Atom Z Z3775

z3775

Intel Atom Z Z3775D

z3775d

Intel Atom Z Z3785

z3785

Intel Atom Z Z3795

z3795

Intel Celeron J J3455

j3455

Intel Celeron J J4005

j4005

Intel Celeron J J4105

j4105

Intel Celeron N N3450

n3450

Intel Pentium J J4205

j4205

Intel Xeon E-1105C

Intel Xeon E3 1505M V6

1505m_v6

Intel Xeon E3 1515M V5

1515m_v5

Intel Xeon E3 1535M V5

1535m_v5

Intel Xeon E3 1535M V6

1535m_v6

Intel Xeon E3 1545M V5

1545m_v5

Intel Xeon E3 1558L V5

1558l_v5

Intel Xeon E3 1565L V5

1565l_v5

Intel Xeon E3 1575M V5

1575m_v5

Intel Xeon E3 1578L V5

1578l_v5

Intel Xeon E3 1585 V5

1585_v5

Intel Xeon E3 1585L V5

1585l_v5

Intel Xeon E3 1105C V2

Intel Xeon E3 1125C V2

Intel Xeon E3 12201

Intel Xeon E3 12201 V2

Intel Xeon E3 1220 V2

Intel Xeon E3 1220 V3

Intel Xeon E3 1220 V5

Intel Xeon E3 1220 V6

Intel Xeon E3 1220L V3

Intel Xeon E3 1225

Intel Xeon E3 1225 V2

Intel Xeon E3 1225 V3

Intel Xeon E3 1225 V5

Intel Xeon E3 1225 V6

Intel Xeon E3 1226 V3

Intel Xeon E3 1230

Intel Xeon E3 1230 V2

Intel Xeon E3 1230 V3

Intel Xeon E3 1230 V5

Intel Xeon E3 1230 V6

Intel Xeon E3 1230L V3

Intel Xeon E3 1231 V3

Intel Xeon E3 1235

Intel Xeon E3 1235L V5

Intel Xeon E3 1240

Intel Xeon E3 1240 V2

Intel Xeon E3 1240 V3

Intel Xeon E3 1240 V5

Intel Xeon E3 1240 V6

Intel Xeon E3 1240L V3

Intel Xeon E3 1240l V5

Intel Xeon E3 1241 V3

Intel Xeon E3 1245

Intel Xeon E3 1245 V2

Intel Xeon E3 1245 V3

Intel Xeon E3 1245 V5

Intel Xeon E3 1245 V6

Intel Xeon E3 1246 V3

Intel Xeon E3 1258L V4

Intel Xeon E3 1260L

Intel Xeon E3 1260L V5

Intel Xeon E3 1265L V2

Intel Xeon E3 1265L V3

Intel Xeon E3 1265L V4

Intel Xeon E3 1268L V3

Intel Xeon E3 1268L V5

Intel Xeon E3 1270

Intel Xeon E3 1270 V2

Intel Xeon E3 1270 V3

Intel Xeon E3 1270 V5

Intel Xeon E3 1270 V6

Intel Xeon E3 1271 V3

Intel Xeon E3 1275 V2

Intel Xeon E3 1275 V3

Intel Xeon E3 1275 V5

Intel Xeon E3 1275 V6

Intel Xeon E3 1275L V3

Intel Xeon E3 1276 V3

Intel Xeon E3 1278L V4

Intel Xeon E3 1280

Intel Xeon E3 1280 V2

Intel Xeon E3 1280 V3

Intel Xeon E3 1280 V5

Intel Xeon E3 1280 V6

Intel Xeon E3 1281 V3

Intel Xeon E3 1285 V3

Intel Xeon E3 1285 V4

Intel Xeon E3 1285 V6

Intel Xeon E3 1285L V3

Intel Xeon E3 1285L V4

Intel Xeon E3 1286 V3

Intel Xeon E3 1286L V3

Intel Xeon E3 1290

Intel Xeon E3 1290 V2

Intel Xeon E3 1501L V6

Intel Xeon E3 1501M V6

Intel Xeon E3 1505L V5

Intel Xeon E3 1505L V6

Intel Xeon E3 1505M V5

Intel Xeon E5 2650L V4

2650l_v4

Intel Xeon E5 2658

2658

Intel Xeon E5 2658 V2

2658_v2

Intel Xeon E5 2658 V3

2658_v3

Intel Xeon E5 2658 V4

2658_v4

Intel Xeon E5 2658A V3

2658a_v3

Intel Xeon E5 2660

2660

Intel Xeon E5 2660 V2

2660_v2

Intel Xeon E5 2660 V3

2660_v3

Intel Xeon E5 2660 V4

2660_v4

Intel Xeon E5 2665

2665

Intel Xeon E5 2667

2667

Intel Xeon E5 2667 V2

2667_v2

Intel Xeon E5 2667 V3

2667_v3

Intel Xeon E5 2667 V4

2667_v4

Intel Xeon E5 2670

2670

Intel Xeon E5 2670 V2

2670_v2

Intel Xeon E5 2670 V3

2670_v3

Intel Xeon E5 2680

2680

Intel Xeon E5 2680 V2

2680_v2

Intel Xeon E5 2680 V3

2680_v3

Intel Xeon E5 2680 V4

2680_v4

Intel Xeon E5 2683 V3

2683_v3

Intel Xeon E5 2683 V4

2683_v4

Intel Xeon E5 2687W

2687w

Intel Xeon E5 2687W V2

2687w_v2

Intel Xeon E5 2687W V3

2687w_v3

Intel Xeon E5 2687W V4

2687w_v4

Intel Xeon E5 2690

2690

Intel Xeon E5 2690 V2

2690_v2

Intel Xeon E5 2690 V3

2690_v3

Intel Xeon E5 2690 V4

2690_v4

Intel Xeon E5 2695 V2

2695_v2

Intel Xeon E5 2695 V3

2695_v3

Intel Xeon E5 2695 V4

2695_v4

Intel Xeon E5 2697 V2

2697_v2

Intel Xeon E5 2697 V3

2697_v3

Intel Xeon E5 2697 V4

2697_v4

Intel Xeon E5 2697A V4

2697a_v4

Intel Xeon E5 2698 V3

2698_v3

Intel Xeon E5 2698 V4

2698_v4

Intel Xeon E5 2699 V3

2699_v3

Intel Xeon E5 2699 V4

2699_v4

Intel Xeon E5 2699A V4

2699a_v4

Intel Xeon E5 2699R V4

2699r_v4

Intel Xeon E5 4603

4603

Intel Xeon E5 4603 V2

4603_v2

Intel Xeon E5 4607

4607

Intel Xeon E5 4607 V2

4607_v2

Intel Xeon E5 4610

4610

Intel Xeon E5 4610 V2

4610_v2

Intel Xeon E5 4610 V3

4610_v3

Intel Xeon E5 4610 V4

4610_v4

Intel Xeon E5 4617

4617

Intel Xeon E5 4620

4620

Intel Xeon E5 4620 V2

4620_v2

Intel Xeon E5 4620 V3

4620_v3

Intel Xeon E5 4620 V4

4620_v4

Intel Xeon E5 4624L V2

4624l_v2

Intel Xeon E5 4627 V2

4627_v2

Intel Xeon E5 4627 V3

4627_v3

Intel Xeon E5 4627 V4

4627_v4

Intel Xeon E5 4628L V4

4628l_v4

Intel Xeon E5 4640

4640

Intel Xeon E5 4640 V2

4640_v2

Intel Xeon E5 4640 V3

4640_v3

Intel Xeon E5 4640 V4

4640_v4

Intel Xeon E5 4648 V3

4648_v3

Intel Xeon E5 4650

4650

Intel Xeon E5 4650 V2

4650_v2

Intel Xeon E5 4650 V3

4650_v3

Intel Xeon E5 4650 V4

4650_v4

Intel Xeon E5 4650L

4650l

Intel Xeon E5 4655 V3

4655_v3

Intel Xeon E5 4655 V4

4655_v4

Intel Xeon E5 4657L V2

4657l_v2

Intel Xeon E5 4660 V3

4660_v3

Intel Xeon E5 4660 V4

4660_v4

Intel Xeon E5 4667 V3

4667_v3

Intel Xeon E5 4667 V4

4667_v4

Intel Xeon E5 4669 V3

4669_v3

Intel Xeon E5 4669 V4

4669_v4

Intel Xeon E5 1428L

Intel Xeon E5 1428L V2

Intel Xeon E5 1428L V3

Intel Xeon E5 1620

Intel Xeon E5 1620 V2

Intel Xeon E5 1620 V3

Intel Xeon E5 1620 V4

Intel Xeon E5 1630 V3

Intel Xeon E5 1630 V4

Intel Xeon E5 1650

Intel Xeon E5 1650 V2

Intel Xeon E5 1650 V3

Intel Xeon E5 1650 V4

Intel Xeon E5 1660

Intel Xeon E5 1660 V2

Intel Xeon E5 1660 V3

Intel Xeon E5 1660 V4

Intel Xeon E5 1680 V3

Intel Xeon E5 1680 V4

Intel Xeon E5 2403

Intel Xeon E5 2403 V2

Intel Xeon E5 2407

Intel Xeon E5 2407 V2

Intel Xeon E5 2408L V3

Intel Xeon E5 2418L

Intel Xeon E5 2418L V2

Intel Xeon E5 2418L V3

Intel Xeon E5 2420

Intel Xeon E5 2420 V2

Intel Xeon E5 2428L

Intel Xeon E5 2428L V2

Intel Xeon E5 2428L V3

Intel Xeon E5 2430

Intel Xeon E5 2430 V2

Intel Xeon E5 2430L

Intel Xeon E5 2430L V2

Intel Xeon E5 2438L V3

Intel Xeon E5 2440

Intel Xeon E5 2440 V2

Intel Xeon E5 2448L

Intel Xeon E5 2448L V2

Intel Xeon E5 2450

Intel Xeon E5 2450 V2

Intel Xeon E5 2450L

Intel Xeon E5 2450L V2

Intel Xeon E5 2470

Intel Xeon E5 2470 V2

Intel Xeon E5 2603

Intel Xeon E5 2603 V2

Intel Xeon E5 2603 V3

Intel Xeon E5 2603 V4

Intel Xeon E5 2608L V3

Intel Xeon E5 2608L V4

Intel Xeon E5 2609

Intel Xeon E5 2609 V2

Intel Xeon E5 2609 V3

Intel Xeon E5 2609 V4

Intel Xeon E5 2618L V2

Intel Xeon E5 2618L V3

Intel Xeon E5 2618L V4

Intel Xeon E5 2620

Intel Xeon E5 2620 V2

Intel Xeon E5 2620 V3

Intel Xeon E5 2620 V4

Intel Xeon E5 2623 V3

Intel Xeon E5 2623 V4

Intel Xeon E5 2628L V2

Intel Xeon E5 2628L V3

Intel Xeon E5 2628L V4

Intel Xeon E5 2630

Intel Xeon E5 2630 V2

Intel Xeon E5 2630 V3

Intel Xeon E5 2630 V4

Intel Xeon E5 2630L

Intel Xeon E5 2630L V2

Intel Xeon E5 2630L V3

Intel Xeon E5 2630L V4

Intel Xeon E5 2637

Intel Xeon E5 2637 V2

Intel Xeon E5 2637 V3

Intel Xeon E5 2637 V4

Intel Xeon E5 2640

Intel Xeon E5 2640 V2

Intel Xeon E5 2640 V3

Intel Xeon E5 2640 V4

Intel Xeon E5 2643

Intel Xeon E5 2643 V2

Intel Xeon E5 2643 V3

Intel Xeon E5 2643 V4

Intel Xeon E5 2648L

Intel Xeon E5 2648L V2

Intel Xeon E5 2648L V3

Intel Xeon E5 2648L V4

Intel Xeon E5 2650

Intel Xeon E5 2650 V2

Intel Xeon E5 2650 V3

Intel Xeon E5 2650 V4

Intel Xeon E5 2650L

Intel Xeon E5 2650L V2

Intel Xeon E5 2650L V3

Intel Xeon E7 2803

2803

Intel Xeon E7 2820

2820

Intel Xeon E7 2830

2830

Intel Xeon E7 2850

2850

Intel Xeon E7 2850 V2

2850_v2

Intel Xeon E7 2860

2860

Intel Xeon E7 2870

2870

Intel Xeon E7 2870 V2

2870_v2

Intel Xeon E7 2880 V2

2880_v2

Intel Xeon E7 2890 V2

2890_v2

Intel Xeon E7 4807

4807

Intel Xeon E7 4809 V2

4809_v2

Intel Xeon E7 4809 V3

4809_v3

Intel Xeon E7 4809 V4

4809_v4

Intel Xeon E7 4820

4820

Intel Xeon E7 4820 V2

4820_v2

Intel Xeon E7 4820 V3

4820_v3

Intel Xeon E7 4820 V4

4820_v4

Intel Xeon E7 4830

4830

Intel Xeon E7 4830 V2

4830_v2

Intel Xeon E7 4830 V3

4830_v3

Intel Xeon E7 4830 V4

4830_v4

Intel Xeon E7 4850

4850

Intel Xeon E7 4850 V2

4850_v2

Intel Xeon E7 4850 V3

4850_v3

Intel Xeon E7 4850 V4

4850_v4

Intel Xeon E7 4860

4860

Intel Xeon E7 4860 V2

4860_v2

Intel Xeon E7 4870

4870

Intel Xeon E7 4870 V2

4870_v2

Intel Xeon E7 4880 V2

4880_v2

Intel Xeon E7 4890 V2

4890_v2

Intel Xeon E7 8830

8830

Intel Xeon E7 8837

8837

Intel Xeon E7 8850

8850

Intel Xeon E7 8850 V2

8850_v2

Intel Xeon E7 8857 V2

8857_v2

Intel Xeon E7 8860

8860

Intel Xeon E7 8860 V3

8860_v3

Intel Xeon E7 8860 V4

8860_v4

Intel Xeon E7 8867 V3

8867_v3

Intel Xeon E7 8867 V4

8867_v4

Intel Xeon E7 8867L

8867l

Intel Xeon E7 8870

8870

Intel Xeon E7 8870 V2

8870_v2

Intel Xeon E7 8870 V3

8870_v3

Intel Xeon E7 8870 V4

8870_v4

Intel Xeon E7 8880 V2

8880_v2

Intel Xeon E7 8880 V3

8880_v3

Intel Xeon E7 8880 V4

8880_v4

Intel Xeon E7 8880L V2

8880l_v2

Intel Xeon E7 8880L V3

8880l_v3

Intel Xeon E7 8890 V2

8890_v2

Intel Xeon E7 8890 V3

8890_v3

Intel Xeon E7 8890 V4

8890_v4

Intel Xeon E7 8891 V2

8891_v2

Intel Xeon E7 8891 V3

8891_v3

Intel Xeon E7 8891 V4

8891_v4

Intel Xeon E7 8893 V2

8893_v2

Intel Xeon E7 8893 V3

8893_v3

Intel Xeon E7 8893 V4

8893_v4

Intel Xeon E7 8894 V4

8894_v4

Intel Xeon Gold 5115

5115

Intel Xeon Platinum 8153

8153

Intel Xeon Platinum 8156

8156

Intel Xeon Platinum 8158

8158

Intel Xeon Platinum 8160

8160

Intel Xeon Platinum 8160F

8160f

Intel Xeon Platinum 8160M

8160m

Intel Xeon Platinum 8160T

8160t

Intel Xeon Platinum 8164

8164

Intel Xeon Platinum 8168

8168

Intel Xeon Platinum 8170

8170

Intel Xeon Platinum 8170M

8170m

Intel Xeon Platinum 8176

8176

Intel Xeon Platinum 8176F

8176f

Intel Xeon Platinum 8176M

8176m

Intel Xeon Platinum 8180

8180

Intel Xeon Silver 4108

4108

Intel Xeon Silver 4109T

4109t

Intel Xeon Silver 4110

4110

Intel Xeon Silver 4112

4112

Intel Xeon Silver 4114

4114

Intel Xeon Silver 4114T

4114t

Intel Xeon Silver 4116

4116

Intel Xeon Silver 4116T

4116t

ARM Cortex-A15

15

ARM Cortex-A57

57

ARM Cortex-A72

72

References

http://support.lenovo.com/us/en/solutions/LEN-22133

Third Party Advisory

http://www.fujitsu.com/global/support/products/software/security/products-f/cve-2018-3639e.html

Third Party Advisory

104228

Third Party Advisory, VDB Entry

1040949

Third Party Advisory, VDB Entry

1042004

https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf

https://cert-portal.siemens.com/productcert/pdf/ssa-608355.pdf

https://developer.arm.com/support/arm-security-updates/speculative-processor-vulnerability

Vendor Advisory

[debian-lts-announce] 20180727 [SECURITY] [DLA 1446-1] intel-microcode security update

[debian-lts-announce] 20180916 [SECURITY] [DLA 1506-1] intel-microcode security update

https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/ADV180013

Patch, Third Party Advisory, Vendor Advisory

https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2018-0005

https://security.netapp.com/advisory/ntap-20180521-0001/

Third Party Advisory

https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03850en_us

Third Party Advisory

20180522 CPU Side-Channel Information Disclosure Vulnerabilities: May 2018

Third Party Advisory

USN-3756-1

DSA-4273

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00115.html

Vendor Advisory

VU#180049

Third Party Advisory, US Government Resource

https://www.mitel.com/en-ca/support/security-advisories/mitel-product-security-advisory-18-0006

https://www.synology.com/support/security/Synology_SA_18_23

Third Party Advisory

TA18-141A

Third Party Advisory, US Government Resource

Stay updated

ExploitPedia is constantly evolving. Sign up to receive a notification when we release additional functionality.

Get in touch

If you'd like to report a bug or have any suggestions for improvements then please do get in touch with us using this form. We will get back to you as soon as we can.