vulnerability

Oracle Linux: CVE-2023-20569: ELSA-2023-12712: linux-firmware security update (IMPORTANT) (Multiple Advisories)

Severity
4
CVSS
(AV:L/AC:M/Au:S/C:C/I:N/A:N)
Published
Aug 8, 2023
Added
Aug 9, 2023
Modified
Jul 21, 2025

Description

A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction. This may result in speculative execution at an attacker-controlled address, potentially leading to information disclosure.
A side channel vulnerability was found in hw amd. Some AMD CPUs may allow an attacker to influence the return address prediction. This issue may result in speculative execution at an attacker-controlled instruction pointer register, potentially leading to information disclosure.

Solutions

oracle-linux-upgrade-kerneloracle-linux-upgrade-kernel-uek

References

    Title
    NEW

    Explore Exposure Command

    Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.