CVE-2022-0002

MEDIUM

Intel Celeron N4000 and Atom Processors - Information Disclosure via Branch Predictor Sharing

Title source: llm
STIX 2.1

Description

Non-transparent sharing of branch predictor within a context in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.

References (4)

Core 4
Core References
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2022/03/18/2
Patch, Third Party Advisory x_refsource_misc
https://www.oracle.com/security-alerts/cpujul2022.html
Third Party Advisory x_refsource_confirm
https://security.netapp.com/advisory/ntap-20220818-0004/

Scores

CVSS v3 6.5
EPSS 0.0069
EPSS Percentile 72.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (50)
intel/atom_c3308
intel/atom_c3336
intel/atom_c3338
intel/atom_c3338r
intel/atom_c3436l
intel/atom_c3508
intel/atom_c3538
intel/atom_c3558
intel/atom_c3558r
intel/atom_c3558rc
... and 40 more
Published Mar 11, 2022
Tracked Since Feb 18, 2026