Bug 2062284 (CVE-2022-23960) - CVE-2022-23960 hw: cpu: arm64: Spectre-BHB
Summary: CVE-2022-23960 hw: cpu: arm64: Spectre-BHB
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2022-23960
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2062285 2062286 2062287 2062288
Blocks: 2012088
TreeView+ depends on / blocked
 
Reported: 2022-03-09 13:26 UTC by Petr Matousek
Modified: 2024-03-12 16:25 UTC (History)
34 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
A new cache speculation vulnerability, known as Branch History Injection (BHI) or Spectre-BHB, was found in hw. Spectre-BHB is similar to Spectre v2, except that malicious code uses the shared branch history (stored in the CPU Branch History Buffer, or BHB) to influence mispredicted branches within the victim's hardware context. Once that occurs, speculation caused by the mispredicted branches can cause cache allocation. This issue leads to obtaining information that should not be accessible.
Clone Of:
Environment:
Last Closed: 2022-12-04 01:33:14 UTC
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2022:7683 0 None None None 2022-11-08 10:08:58 UTC
Red Hat Product Errata RHSA-2024:0930 0 None None None 2024-02-21 00:26:38 UTC

Description Petr Matousek 2022-03-09 13:26:46 UTC
A new cache speculation vulnerability known as Branch History Injection (BHI) or Spectre-BHB was found. Spectre-BHB is similar to Spectre v2, except that malicious code uses the shared branch history (stored in the CPU Branch History Buffer, or BHB) to influence mispredicted branches within the victim's own hardware context. Once that occurs, speculation caused by mispredicted branches can be used to cause cache allocation, which can then be used to infer information that should not be accessible.

Comment 9 errata-xmlrpc 2022-11-08 10:08:56 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2022:7683 https://access.redhat.com/errata/RHSA-2022:7683

Comment 10 Product Security DevOps Team 2022-12-04 01:33:12 UTC
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):

https://access.redhat.com/security/cve/cve-2022-23960

Comment 14 errata-xmlrpc 2024-02-21 00:26:35 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.6 Extended Update Support

Via RHSA-2024:0930 https://access.redhat.com/errata/RHSA-2024:0930


Note You need to log in before you can comment on or make changes to this bug.