4.7
CVSSv3

CVE-2023-20569

Published: 08/08/2023 Updated: 10/06/2024
CVSS v3 Base Score: 4.7 | Impact Score: 3.6 | Exploitability Score: 1
VMScore: 0

Vulnerability Summary

A side channel vulnerability on some of the AMD CPUs may allow an malicious user to influence the return address prediction. This may result in speculative execution at an attacker-controlled?address, potentially leading to information disclosure.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fedoraproject fedora 37

fedoraproject fedora 38

debian debian linux 10.0

debian debian linux 11.0

debian debian linux 12.0

amd ryzen 9 5950x firmware

amd ryzen 9 5900x firmware

amd ryzen 9 5900 firmware

amd ryzen 9 pro 5945 firmware

amd ryzen 7 5800x3d firmware

amd ryzen 7 5800x firmware

amd ryzen 7 5800 firmware

amd ryzen 7 5700x firmware

amd ryzen 7 pro 5845 firmware

amd ryzen 5 5600x3d firmware

amd ryzen 5 5600x firmware

amd ryzen 5 5600 firmware

amd ryzen 5 pro 5645 firmware

amd ryzen 7 5700 firmware

amd ryzen 5 5500 firmware

amd ryzen 3 5100 firmware

amd ryzen 7 5700g firmware

amd ryzen 7 5700ge firmware

amd ryzen 5 5600g firmware

amd ryzen 5 5600ge firmware

amd ryzen 3 5300g firmware

amd ryzen 3 5300ge firmware

amd ryzen 9 7950x3d firmware

amd ryzen 9 7950x firmware

amd ryzen 9 7900x3d firmware

amd ryzen 9 7900x firmware

amd ryzen 9 7900 firmware

amd ryzen 9 pro 7945 firmware

amd ryzen 7 7800x3d firmware

amd ryzen 7 7700x firmware

amd ryzen 7 7700 firmware

amd ryzen 7 pro 7745 firmware

amd ryzen 5 7600x firmware

amd ryzen 5 7600 firmware

amd ryzen 5 pro 7645 firmware

amd ryzen 5 7500f firmware

amd ryzen threadripper pro 5995wx firmware

amd ryzen threadripper pro 5975wx firmware

amd ryzen threadripper pro 5965wx firmware

amd ryzen threadripper pro 5955wx firmware

amd ryzen threadripper pro 5945wx firmware

amd ryzen 7 5700u firmware

amd ryzen 5 5500u firmware

amd ryzen 3 5300u firmware

amd ryzen 9 5980hx firmware

amd ryzen 9 5980hs firmware

amd ryzen 9 5900hx firmware

amd ryzen 9 5900hs firmware

amd ryzen 7 5800h firmware

amd ryzen 7 5800hs firmware

amd ryzen 7 5825u firmware

amd ryzen 7 5800u firmware

amd ryzen 5 5600h firmware

amd ryzen 5 5600hs firmware

amd ryzen 5 5625u firmware

amd ryzen 5 5600u firmware

amd ryzen 5 5560u firmware

amd ryzen 3 5425u firmware

amd ryzen 3 5400u firmware

amd ryzen 3 5125c firmware

amd ryzen 9 6980hx firmware

amd ryzen 9 6980hs firmware

amd ryzen 9 6900hx firmware

amd ryzen 9 6900hs firmware

amd ryzen 7 6800h firmware

amd ryzen 7 6800hs firmware

amd ryzen 7 6800u firmware

amd ryzen 5 6600h firmware

amd ryzen 5 6600hs firmware

amd ryzen 5 6600u firmware

amd ryzen 7 7735hs firmware

amd ryzen 7 7736u firmware

amd ryzen 7 7735u firmware

amd ryzen 5 7535hs firmware

amd ryzen 5 7535u firmware

amd ryzen 3 7335u firmware

amd ryzen 7 pro 7730u firmware

amd ryzen 5 pro 7530u firmware

amd ryzen 3 pro 7330u firmware

amd ryzen 9 pro 7640hs firmware

amd ryzen 9 7940h firmware

amd ryzen 7 pro 7840hs firmware

amd ryzen 7 7840h firmware

amd ryzen 7 7840u firmware

amd ryzen 5 pro 7640hs firmware

amd ryzen 5 7640h firmware

amd ryzen 5 7640u firmware

amd ryzen 5 7540u firmware

amd ryzen 3 7440u firmware

amd ryzen 9 7945hx3d firmware

amd ryzen 9 7945hx firmware

amd ryzen 9 7845hx firmware

amd ryzen 7 7745hx firmware

amd ryzen 5 7645hx firmware

amd epyc 7773x firmware

amd epyc 7763 firmware

amd epyc 7713 firmware

amd epyc 7713p firmware

amd epyc 7663 firmware

amd epyc 7643 firmware

amd epyc 7573x firmware

amd epyc 75f3 firmware

amd epyc 7543 firmware

amd epyc 7543p firmware

amd epyc 7513 firmware

amd epyc 7453 firmware

amd epyc 7473x firmware

amd epyc 74f3 firmware

amd epyc 7443 firmware

amd epyc 7443p firmware

amd epyc 7413 firmware

amd epyc 7373x firmware

amd epyc 73f3 firmware

amd epyc 7343 firmware

amd epyc 7313 firmware

amd epyc 7313p firmware

amd epyc 72f3 firmware

amd epyc 9124 firmware

amd epyc 9224 firmware

amd epyc 9254 firmware

amd epyc 9334 firmware

amd epyc 9354 firmware

amd epyc 9354p firmware

amd epyc 9174f firmware

amd epyc 9184x firmware

amd epyc 9274f firmware

amd epyc 9374f firmware

amd epyc 9384x firmware

amd epyc 9474f firmware

amd epyc 9454 firmware

amd epyc 9454p firmware

amd epyc 9534 firmware

amd epyc 9554 firmware

amd epyc 9554p firmware

amd epyc 9634 firmware

amd epyc 9654 firmware

amd epyc 9654p firmware

amd epyc 9684x firmware

amd epyc 9734 firmware

amd epyc 9754s firmware

amd epyc 9754 firmware

microsoft windows server 2008 r2

microsoft windows server 2012 r2

microsoft windows server 2008 -

microsoft windows server 2012 -

microsoft windows 10 21h2

microsoft windows 10 1607

microsoft windows 10 22h2

microsoft windows 11 21h2

microsoft windows 11 22h2

microsoft windows 10 1507

microsoft windows 10 1809

microsoft windows server 2016

microsoft windows server 2019

microsoft windows server 2022

Vendor Advisories

CVE-2022-40982 Daniel Moghimi discovered Gather Data Sampling (GDS), a hardware vulnerability for Intel CPUs which allows unprivileged speculative access to data which was previously stored in vector registers This mitigation requires updated CPU microcode provided in the intel-microcode package For details please refer to ...
Synopsis Important: OpenShift Container Platform 41154 bug fix and security update Type/Severity Security Advisory: Important Topic Red Hat OpenShift Container Platform release 41154 is now available with updates to packages and images that fix several bugs and add enhancementsThis release includes a security update for Red Hat OpenShift ...
概述 Important: OpenShift Container Platform 41245 bug fix and security update 类型/严重性 Security Advisory: Important 标题 Red Hat OpenShift Container Platform release 41245 is now available with updates to packages and images that fix several bugs and add enhancementsThis release includes a security update for Red Hat OpenShi ...
Synopsis Important: kernel security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for kernel is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this update as having a se ...
Synopsis Moderate: Logging Subsystem 582 - Red Hat OpenShift security update Type/Severity Security Advisory: Moderate Topic Moderate: Logging Subsystem 582 - Red Hat OpenShift security updateRed Hat Product Security has rated this update as having a security impact of moderate A Common Vulnerability Scoring System (CVSS) base score, whi ...
Synopsis Moderate: linux-firmware security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for linux-firmware is now available for Red Hat Enterprise Linux 8Red Hat Product Secur ...
Synopsis Important: kernel-rt security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for kernel-rt is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as havin ...
Synopsis Important: kernel security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for kernel is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a se ...
Synopsis Moderate: linux-firmware security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for linux-firmware is now available for Red Hat Enterprise Linux 90 Extended Update SupportRed Hat Product Secur ...
Synopsis Moderate: linux-firmware security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for linux-firmware is now available for Red Hat Enterprise Linux 76 Advanced Update SupportRed Hat Product Secur ...
Synopsis Important: kernel security and bug fix update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for kernel is now available for Red Hat Enterprise Linux 86 Extended Update SupportRed Hat Product Securit ...
Description<!---->A side channel vulnerability was found in hw amd Some AMD CPUs may allow an attacker to influence the return address prediction This issue may result in speculative execution at an attacker-controlled instruction pointer register, potentially leading to information disclosureA side channel vulnerability was found in hw amd Som ...

Recent Articles

Nearly every AMD CPU since 2017 vulnerable to Inception data-leak attacks
The Register

Topics Security Off-Prem On-Prem Software Offbeat Special Features Vendor Voice Vendor Voice Resources It's like a nesting doll of security flaws

AMD processor users, you have another data-leaking vulnerability to deal with: like Zenbleed, this latest hole can be to steal sensitive data from a running vulnerable machine. The flaw (CVE-2023-20569), dubbed Inception in reference to the Christopher Nolan flick about manipulating a person's dreams to achieve a desired outcome in the real world, was disclosed by ETH Zurich academics this week. And yes, it's another speculative-execution-based side-channel that malware or a rogue logged-in user...