Vulnerabilities > CVE-2022-26373
Attack vector
LOCAL Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
Vulnerable Configurations
References
- https://lists.debian.org/debian-lts-announce/2022/09/msg00011.html
- https://lists.debian.org/debian-lts-announce/2022/09/msg00011.html
- https://lists.debian.org/debian-lts-announce/2022/10/msg00000.html
- https://lists.debian.org/debian-lts-announce/2022/10/msg00000.html
- https://security.netapp.com/advisory/ntap-20221007-0005/
- https://security.netapp.com/advisory/ntap-20221007-0005/
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00706.html
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00706.html