CVE-2022-29900

Dell ECS: Sicherheitsluecke

Affected

  • Dell/ECS 3.8.1.0..*

Description

Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarchitecture-dependent conditions.

Affected products

The following versions are affected. Older releases of the same product line are also vulnerable unless stated otherwise.

DellECS
3.8.1.0

Metrics

90.1 %
Critical — this CVE ranks in the top fifth of all CVEs scored today (rank ≥ 80%).
Show all metrics
Severity
none
PoC (publicly reported)
3.9 %
Moderate — model estimates 1-10% exploitation likelihood.
Published
2022-07-12 15:50 UTC

References & sources

Linked advisories