Wind River Support Network

HomeDefectsLIN1018-9510
Fixed

LIN1018-9510 : Security Advisory - linux - CVE-2022-29901

Created: Jul 12, 2022    Updated: Mar 23, 2023
Resolved Date: Jan 10, 2023
Found In Version: 10.18.44.1
Fix Version: 10.18.44.29
Severity: Standard
Applicable for: Wind River Linux LTS 18
Component/s: Kernel

Description

Intel microprocessor generations 6 to 8 are affected by a new Spectre variant that is able to bypass their retpoline mitigation in the kernel to leak arbitrary data. An attacker with unprivileged user access can hijack return instructions to achieve arbitrary speculative code execution under certain microarchitecture-dependent conditions.

CREATE(Triage):(User=admin) CVE-2022-29901 (https://nvd.nist.gov/vuln/detail/CVE-2022-29901)

CVEs


Live chat
Online