Description
Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
References (4)
Core 4
Core References
Mailing List, Third Party Advisory mailing-list
https://lists.debian.org/debian-lts-announce/2022/09/msg00011.html
Mailing List, Third Party Advisory mailing-list
https://lists.debian.org/debian-lts-announce/2022/10/msg00000.html
Third Party Advisory
https://security.netapp.com/advisory/ntap-20221007-0005/
Scores
CVSS v3
5.5
EPSS
0.0011
EPSS Percentile
28.3%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
Status
published
Products (50)
debian/debian_linux
10.0
intel/celeron_5305u_firmware
intel/celeron_6305_firmware
intel/celeron_6305e_firmware
intel/celeron_6600he_firmware
intel/celeron_7300_firmware
intel/celeron_7305_firmware
intel/celeron_g5205u_firmware
intel/celeron_g5305u_firmware
intel/celeron_g5900_firmware
... and 40 more
Published
Aug 18, 2022
Tracked Since
Feb 18, 2026