vulnerability
Microsoft Windows: CVE-2023-20569: AMD: CVE-2023-20569 Return Address Predictor
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
4 | (AV:L/AC:M/Au:S/C:C/I:N/A:N) | Aug 8, 2023 | Aug 8, 2023 | Jan 28, 2025 |
Severity
4
CVSS
(AV:L/AC:M/Au:S/C:C/I:N/A:N)
Published
Aug 8, 2023
Added
Aug 8, 2023
Modified
Jan 28, 2025
Description
A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction. This may result in speculative execution at an attacker-controlled?address, potentially leading to information disclosure.
Solution(s)
microsoft-windows-windows_10-1507-kb5029259microsoft-windows-windows_10-1607-kb5029242microsoft-windows-windows_10-1809-kb5029247microsoft-windows-windows_10-21h2-kb5029244microsoft-windows-windows_10-22h2-kb5029244microsoft-windows-windows_11-21h2-kb5029253microsoft-windows-windows_11-22h2-kb5029263microsoft-windows-windows_server_2012-kb5029308microsoft-windows-windows_server_2012_r2-kb5029304microsoft-windows-windows_server_2016-1607-kb5029242microsoft-windows-windows_server_2019-1809-kb5029247microsoft-windows-windows_server_2022-21h2-kb5029250microsoft-windows-windows_server_2022-22h2-kb5029250msft-kb5029301-a1547be5-0202-42de-a84d-fe4f4a84c377msft-kb5029301-c4e2b172-875e-4f65-9beb-aa4ca197f8bbmsft-kb5029307-3bec02c2-d1d5-4e49-9725-a9f0853ffbfa
References
- CVE-2023-20569
- https://attackerkb.com/topics/CVE-2023-20569
- URL-https://support.microsoft.com/help/5029242
- URL-https://support.microsoft.com/help/5029244
- URL-https://support.microsoft.com/help/5029247
- URL-https://support.microsoft.com/help/5029250
- URL-https://support.microsoft.com/help/5029253
- URL-https://support.microsoft.com/help/5029259
- URL-https://support.microsoft.com/help/5029263
- URL-https://support.microsoft.com/help/5029304
- URL-https://support.microsoft.com/help/5029308
- URL-https://support.microsoft.com/help/5029312

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.