Skip to content

kernel CVE-2022-0001

High
cbgbt published GHSA-6jg8-pgrv-4jrj Mar 9, 2022

Package

kernel (bottlerocket)

Affected versions

< 1.6.2

Patched versions

1.6.2

Description

Non-transparent sharing of branch predictor selectors between contexts in some Intel Processors may allow an authorized user to potentially enable information disclosure.

Unprivileged eBPF has always been disabled by default in Bottlerocket, which mitigates the current known vector to exploit this vulnerability.

Severity

High

CVE ID

CVE-2022-0001

Weaknesses

No CWEs