A transient execution vulnerability in some AMD processors may allow an attacker to infer data from previous stores, potentially resulting in the leakage of privileged information.
Fixing this CVE requires both microcode and OS kernel update. So there should be separate trackers for kernel and microcode.