Skip to content

kernel CVE-2022-28693

Moderate
arnaldo2792 published GHSA-r94h-47mr-3w9c Oct 13, 2022

Package

kernel-5.10 (bottlerocket)

Affected versions

< 1.10.0

Patched versions

1.10.0
kernel-5.15 (bottlerocket)
< 1.10.0
1.10.0

Description

The unprotected alternative channel of return branch target prediction in some Intel processors may allow an authorized user to enable information disclosure via local access.

Severity

Moderate

CVE ID

CVE-2022-28693

Weaknesses

No CWEs