HomeDefectsLIN10-10334
Not to be fixed

LIN10-10334 : Security Advisory - linux - CVE-2022-29901

Created: Jul 12, 2022    Updated: Dec 22, 2022
Resolved Date: Dec 22, 2022
Found In Version: 10.17.41.1
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Kernel

Description

Intel microprocessor generations 6 to 8 are affected by a new Spectre variant that is able to bypass their retpoline mitigation in the kernel to leak arbitrary data. An attacker with unprivileged user access can hijack return instructions to achieve arbitrary speculative code execution under certain microarchitecture-dependent conditions.

CREATE(Triage):(User=admin) CVE-2022-29901 (https://nvd.nist.gov/vuln/detail/CVE-2022-29901)
Live chat
Online