Beveiligingsadvies

CVE-2020-1459

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-08-17 19:13:02
Laatst bijgewerkt 2024-08-04 06:39:09
Toegewezen door microsoft
CVSS-score 7.5
Status PUBLISHED

Beschrijving

An information disclosure vulnerability exists on ARM implementations that use speculative execution in control flow via a side-channel analysis, aka "straight-line speculation." To exploit this vulnerability, an attacker with local privileges would need to run a specially crafted application. The security update addresses the vulnerability by bypassing the speculative execution.