Get a Pentest and security assessment of your IT network.

2021-current

CVE-2020-10767 – A flaw was found in the Linux kernel before 5.8-rc1 in the implementation

A flaw was found in the Linux kernel before 5.8-rc1 in the implementation of the Enhanced IBPB (Indirect Branch Prediction Barrier). The IBPB mitigation will be disabled when STIBP is not available or when the Enhanced Indirect Branch Restricted Speculation (IBRS) is available. This flaw allows a local attacker to perform a Spectre V2 style attack when this configuration is active. The highest threat from this vulnerability is to confidentiality.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10767

Reference (s):

  • https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10767
  • URL: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10767
  • https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=21998a351512eba4ed5969006f0c55882d995ada
  • URL: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=21998a351512eba4ed5969006f0c55882d995ada
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-9235 - Multiple SQL injection vulnerabilities in Zoph (aka Zoph Organizes Photos

2021-current

CVE-2020-0828 - A remote code execution vulnerability exists in the way that the ChakraCo

2021-current

CVE-2020-14828 - Vulnerability in the MySQL Server product of Oracle MySQL (component: Ser