CVE-2022-49611

MEDIUM

Linux Kernel < 4.14.297 RSB Underflow/Poisoning Attack Mitigation Bypass

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: x86/speculation: Fill RSB on vmexit for IBRS Prevent RSB underflow/poisoning attacks with RSB. While at it, add a bunch of comments to attempt to document the current state of tribal knowledge about RSB attacks and what exactly is being mitigated.

Scores

CVSS v3 5.5
EPSS 0.0028
EPSS Percentile 20.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (32)
linux/Kernel < 4.14.297linux
linux/Kernel 4.15.0 - 5.4.217linux
linux/Kernel 4.20.0 - 5.10.133linux
linux/Kernel 5.11.0 - 5.18.14linux
linux/Kernel 5.5.0 - 5.15.57linux
Linux/Linux < 4.15
Linux/Linux 117cc7a908c83697b0b737d15ae1eb5943afe35b - 17a9fc4a7b91f8599223631bb6ae6416bc0de1c0
Linux/Linux 117cc7a908c83697b0b737d15ae1eb5943afe35b - 4d7f72b6e1bc630bec7e4cd51814bc2b092bf153
Linux/Linux 117cc7a908c83697b0b737d15ae1eb5943afe35b - 8c38306e2e9257af4af2819aa287a4711ff36329
Linux/Linux 117cc7a908c83697b0b737d15ae1eb5943afe35b - 8d5cff499a6d740c91ff37963907e0e983c37f0f
... and 22 more
Published Feb 26, 2025
Tracked Since Feb 18, 2026