Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2022-23960

Опубликовано: 13 сент. 2022
Источник: msrc
EPSS Низкий

Описание

Arm: CVE-2022-23960 Cache Speculation Restriction Vulnerability

FAQ

Why is the MITRE Corporation the assigning CNA (CVE Numbering Authority)?

CVE-2022-23960 is regarding a vulnerability known as Spectre-BHB. MITRE created this CVE on behalf of Arm Limited.

Please see Spectre-BHB on arm Developer for more information.

Обновления

ПродуктСтатьяОбновление
Windows 11 version 21H2 for ARM64-based Systems

Показывать по

Возможность эксплуатации

Publicly Disclosed

Yes

Exploited

No

Latest Software Release

Exploitation Less Likely

Older Software Release

Exploitation Less Likely

DOS

N/A

EPSS

Процентиль: 29%
0.001
Низкий

Связанные уязвимости

CVSS3: 5.6
ubuntu
больше 3 лет назад

Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB. An attacker can leverage the shared branch history in the Branch History Buffer (BHB) to influence mispredicted branches. Then, cache allocation can allow the attacker to obtain sensitive information.

CVSS3: 4.7
redhat
больше 3 лет назад

Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB. An attacker can leverage the shared branch history in the Branch History Buffer (BHB) to influence mispredicted branches. Then, cache allocation can allow the attacker to obtain sensitive information.

CVSS3: 5.6
nvd
больше 3 лет назад

Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB. An attacker can leverage the shared branch history in the Branch History Buffer (BHB) to influence mispredicted branches. Then, cache allocation can allow the attacker to obtain sensitive information.

CVSS3: 5.6
debian
больше 3 лет назад

Certain Arm Cortex and Neoverse processors through 2022-03-08 do not p ...

CVSS3: 5.6
github
больше 3 лет назад

Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB. An attacker can leverage the shared branch history in the Branch History Buffer (BHB) to influence mispredicted branches. Then, cache allocation can allow the attacker to obtain sensitive information.

EPSS

Процентиль: 29%
0.001
Низкий