An information disclosure vulnerability exists on ARM implementations that use speculative execution in control flow via a side-channel analysis, aka "straight-line speculation."
To exploit this vulnerability, an attacker with local privileges would need to run a specially crafted application.
The security update addresses the vulnerability by bypassing the speculative execution.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: microsoft
Published: 2020-08-17T19:13:02
Updated: 2024-08-04T06:39:09.644Z
Reserved: 2019-11-04T00:00:00
Link: CVE-2020-1459
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-08-17T19:15:14.803
Modified: 2024-11-21T05:10:35.723
Link: CVE-2020-1459
Redhat
No data.