MEDIUM · 4.7

CVE-2022-25368

Spectre BHB is a variant of Spectre-v2 in which malicious code uses the shared branch history (stored in the CPU BHB) to influence mispredicted branches in the victim's hardware context. Speculation c...

Vulnerability Description

Spectre BHB is a variant of Spectre-v2 in which malicious code uses the shared branch history (stored in the CPU BHB) to influence mispredicted branches in the victim's hardware context. Speculation caused by these mispredicted branches can then potentially be used to cause cache allocation, which can then be used to infer information that should be protected.

CVSS Score

4.7

MEDIUM

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
AmperecomputingAmpere Altra Max Firmware-
AmperecomputingAmpere Altra Max-
AmperecomputingAmpere Altra Firmware-
AmperecomputingAmpere Altra-
ArmNeoverse-E1 Firmware-
ArmNeoverse-E1-
ArmNeoverse-V1 Firmware-
ArmNeoverse-V1-
ArmCortex-A57 Firmware-
ArmCortex-A57-
ArmCortex-A65 Firmware-
ArmCortex-A65-
ArmCortex-A65Ae Firmware-
ArmCortex-A65Ae-
ArmCortex-A72 Firmware-
ArmCortex-A72-
ArmCortex-A73 Firmware-
ArmCortex-A73-
ArmCortex-A75 Firmware-
ArmCortex-A75-

References

FAQ

What is CVE-2022-25368?

CVE-2022-25368 is a vulnerability with a CVSS score of 4.7 (MEDIUM). Spectre BHB is a variant of Spectre-v2 in which malicious code uses the shared branch history (stored in the CPU BHB) to influence mispredicted branches in the victim's hardware context. Speculation c...

How severe is CVE-2022-25368?

CVE-2022-25368 has been rated MEDIUM with a CVSS base score of 4.7/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-25368?

Check the references section above for vendor advisories and patch information. Affected products include: Amperecomputing Ampere Altra Max Firmware, Amperecomputing Ampere Altra Max, Amperecomputing Ampere Altra Firmware, Amperecomputing Ampere Altra, Arm Neoverse-E1 Firmware.