Wind River Support Network

HomeDefectsLIN1019-8566
Fixed

LIN1019-8566 : Security Advisory - linux - CVE-2022-29901

Created: Jul 12, 2022    Updated: May 24, 2023
Resolved Date: May 24, 2023
Found In Version: 10.19.45.1
Fix Version: 10.19.45.29
Severity: Standard
Applicable for: Wind River Linux LTS 19
Component/s: Kernel

Description

Intel microprocessor generations 6 to 8 are affected by a new Spectre variant that is able to bypass their retpoline mitigation in the kernel to leak arbitrary data. An attacker with unprivileged user access can hijack return instructions to achieve arbitrary speculative code execution under certain microarchitecture-dependent conditions.

CREATE(Triage):(User=admin) CVE-2022-29901 (https://nvd.nist.gov/vuln/detail/CVE-2022-29901)

CVEs


Live chat
Online