Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB. An attacker can leverage the shared branch history in the Branch History Buffer (BHB) to influence mispredicted branches. Then, cache allocation can allow the attacker to obtain sensitive information.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3065-1 | linux security update |
Debian DSA |
DSA-5173-1 | linux security update |
EUVD |
EUVD-2022-28876 | Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB. An attacker can leverage the shared branch history in the Branch History Buffer (BHB) to influence mispredicted branches. Then, cache allocation can allow the attacker to obtain sensitive information. |
Ubuntu USN |
USN-5317-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5318-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5362-1 | Linux kernel (Intel IOTG) vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T03:59:23.170Z
Reserved: 2022-01-26T00:00:00
Link: CVE-2022-23960
No data.
Status : Modified
Published: 2022-03-13T00:15:07.990
Modified: 2024-11-21T06:49:32.247
Link: CVE-2022-23960
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN