Description
A flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() function, where it can be used to enable indirect branch speculation after it has been disabled. This call incorrectly reports it as being 'force disabled' when it is not and opens the system to Spectre v2 attacks. The highest threat from this vulnerability is to confidentiality.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2323-1 | linux-4.19 new package |
EUVD |
EUVD-2020-3183 | A flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() function, where it can be used to enable indirect branch speculation after it has been disabled. This call incorrectly reports it as being 'force disabled' when it is not and opens the system to Spectre v2 attacks. The highest threat from this vulnerability is to confidentiality. |
Ubuntu USN |
USN-4427-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4439-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4440-1 | linux kernel vulnerabilities |
Ubuntu USN |
USN-4483-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4485-1 | Linux kernel vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T11:14:15.299Z
Reserved: 2020-03-20T00:00:00.000Z
Link: CVE-2020-10768
No data.
Status : Modified
Published: 2020-09-16T00:15:11.943
Modified: 2024-11-21T04:56:01.830
Link: CVE-2020-10768
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN