VDB
BDU%3A2022-05273
BDU%3A2022-05273
PUBLISHED
CVSS 3.799999952316284 LOW
Уязвимость микропрограммного обеспечения процессоров Intel, связанная с недостаточной защитой служебных данных посредством использования альтернативного канала, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации.
Risk Scores
CVSS 2.0
3.799999952316284
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., VMware Inc., Intel Corp., Сообщество свободного программного обеспечения | Red Hat Enterprise Linux, VMware Cloud Foundation, Intel Processor (R), VMware ESXi, Linux |
Timeline
- Aug 24, 2022 CVE Published
- Feb 24, 2025 CVE Updated
References
- https://access.redhat.com/security/cve/cve-2022-28693 url
- https://bugzilla.redhat.com/show_bug.cgi?id=2107465 url
- https://community.intel.com/t5/Blogs/Products-and-Solutions/Security/Chips-Salsa-Episode-21-July-2022-Security-Advisories-Retbleed/post/1399055 url
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-28693 url
- https://kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.297 url
- https://kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.266 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.133 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.57 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.18.14 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.217 url
- https://wiki.ubuntu.com/SecurityTeam/KnowledgeBase/Retbleed url
- https://www.cve.org/CVERecord?id=CVE-2022-28693 url
- https://www.cybersecurity-help.cz/vdb/SB2022071302 url
- https://www.intel.com/content/www/us/en/developer/articles/technical/software-security-guidance/advisory-guidance/return-stack-buffer-underflow.html url
- https://www.intel.com/content/www/us/en/developer/topic-technology/software-security-guidance/processors-affected-consolidated-product-cpu-model.html url
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00707.html url
- https://www.vmware.com/security/advisories/VMSA-2022-0020.html url