Vulnerability: Logic Bug in Linux Kernel SSBD Protection

Vulnerability: Logic Bug in Linux Kernel SSBD Protection

CVE-2020-10766 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

A logic bug flaw was found in Linux kernel before 5.8-rc1 in the implementation of SSBD. A bug in the logic handling allows an attacker with a local account to disable SSBD protection during a context switch when additional speculative execution mitigations are in place. This issue was introduced when the per task/process conditional STIPB switching was added on top of the existing SSBD switching. The highest threat from this vulnerability is to confidentiality.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.