UBUNTU-CVE-2022-28693
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-28693
Summary:
Details: Unprotected alternative channel of return branch target prediction in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
References: https://ubuntu.com/security/CVE-2022-28693, https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00707.html, https://www.intel.com/content/www/us/en/developer/articles/technical/software-security-guidance/advisory-guidance/return-stack-buffer-underflow.html, https://community.intel.com/t5/Blogs/Products-and-Solutions/Security/Chips-Salsa-Episode-21-July-2022-Security-Advisories-Retbleed/post/1399055, https://www.intel.com/content/www/us/en/developer/topic-technology/software-security-guidance/processors-affected-consolidated-product-cpu-model.html, https://wiki.ubuntu.com/SecurityTeam/KnowledgeBase/Retbleed, https://www.cve.org/CVERecord?id=CVE-2022-28693
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/linux?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
