← back
CVE-2022-29900

CVE-2022-29900

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 3.8%
exploitation probability
3.8%top 10% of all CVEs
observed exploitation
nono source reports it
In short

Intel processors have a flaw in how they predict where program instructions will jump to next. An attacker could trick the processor into running malicious code speculatively, potentially exposing sensitive data.

Technical detail

A branch prediction vulnerability in Intel processors allows attackers to influence speculative execution of return instructions through microarchitecture-dependent conditions. This can lead to information disclosure via side-channel attacks when sensitive data is accessed during incorrect speculative paths.

Summary generated and translated by AI from the official description.
Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarchitecture-dependent conditions.
Affected products
AMD · AMD Processors