Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Chengyu Song

Researcher fromUniversity of California, Riverside
#41756of 53,635
6.5Total CVSS
Vulnerabilities · 1
PT-2018-3625
6.5
2018-07-31
Linux · Linux Kernel · CVE-2018-15572
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions prior to 4.18.1 **Description** The issue is related to the `spectre v2 select mitigation` function in the Linux kernel, which does not always fill RSB upon a context switch. This makes it easier for attackers to conduct userspace-userspace spectreRSB attacks, potentially allowing them to access confidential data. **Recommendations** For Linux kernel versions prior to 4.18.1, update to version 4.18.1 or later to resolve the issue.