vulnerability

Oracle Linux: CVE-2023-20569: ELSA-2023-7109: linux-firmware security, bug fix, and enhancement update (MODERATE) (Multiple Advisories)

Severity
4
CVSS
(AV:L/AC:H/Au:S/C:C/I:N/A:N)
Published
2023-08-08
Added
2023-08-09
Modified
2025-01-23

Description

A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction. This may result in speculative execution at an attacker-controlled address, potentially leading to information disclosure.
A side channel vulnerability was found in hw amd. Some AMD CPUs may allow an attacker to influence the return address prediction. This issue may result in speculative execution at an attacker-controlled instruction pointer register, potentially leading to information disclosure.

Solution(s)

oracle-linux-upgrade-kerneloracle-linux-upgrade-kernel-uek
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.