CVE-2021-26314: AMD Speculative execution with Floating-Point Value Injection
Potential floating point value injection in all supported CPU products, in conjunction with software vulnerabilities relating to speculative execution with incorrect floating point results, may cause the use of incorrect data from FPVI and may result in data leakage.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-26314?
CVE-2021-26314 refers to a potential floating point value injection vulnerability found in all supported CPU products, in conjunction with software vulnerabilities relating to speculative execution with incorrect floating point results.
Which software products are affected by CVE-2021-26314?
Xen Xen, Arm Cortex-a72, Broadcom Bcm2711, Intel Core I7-10700k, Intel Core I7-7700k, Intel Core I9-9900k, Intel Xeon Silver 4214, and Fedoraproject Fedora versions 33 and 34 are affected by CVE-2021-26314.
What is the severity rating of CVE-2021-26314?
CVE-2021-26314 has a severity rating of 5.5 (Medium).
How can I mitigate CVE-2021-26314?
Apply the necessary software patches and updates provided by the respective software vendors to mitigate CVE-2021-26314.
Where can I find more information about CVE-2021-26314?
You can find more information about CVE-2021-26314 at the following references: [Reference 1](http://www.openwall.com/lists/oss-security/2021/06/09/2), [Reference 2](http://www.openwall.com/lists/oss-security/2021/06/10/1), [Reference 3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/H36U6CNREC436W6GYO7QUMJIVEA35SCV/).