7.8
CVSSv3

CVE-2022-37459

Published: 17/08/2022 Updated: 18/08/2022
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

Ampere Altra devices prior to 1.08g and Ampere Altra Max devices prior to 2.05a allow malicious users to control the predictions for return addresses and potentially hijack code flow to execute arbitrary code via a side-channel attack, aka a "Retbleed" issue.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

amperecomputing ampere_altra_firmware

amperecomputing ampere_altra_max_firmware