CVE-2022-0001: Medium severity microsoft windows server 2012 r2 vulnerability
A flaw was found in hw. The Branch History Injection (BHI) describes a specific form of intra-mode BTI. This flaw allows an unprivileged attacker to manipulate the branch history before transitioning to supervisor or VMX root mode. This issue is an effort to cause an indirect branch predictor to select a specific predictor entry for an indirect branch, and a disclosure gadget at the predicted target will transiently execute. This execution is possible since the relevant branch history may contain branches taken in previous security contexts, and in particular, in other predictor modes.
Other sources
Branch History Injection (BHI) describes a specific form of intra-mode BTI (bug CVE-2022-0001), where an unprivileged attacker may manipulate branch history before transitioning to supervisor or VMX root mode in an effort to cause an indirect branch predictor to select a specific predictor entry for an indirect branch, and a disclosure gadget at the predicted target will transiently execute. This may be possible since the relevant branch history may contain branches taken in previous security contexts, and in particular, in other predictor modes.
— Red Hat
Intel: CVE-2022-0001 Branch History Injection
— Microsoft
Non-transparent sharing of branch predictor selectors between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
This CVE was assigned by Intel. Please see CVE-2022-0001 on CVE.org for more information.
— Microsoft
Affected Software
Remediation
Information
Patch Available
Mitigation
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2022-0001?
CVE-2022-0001 is rated as high in severity due to its potential impact on unprivileged attackers executing arbitrary code.
How do I fix CVE-2022-0001?
To address CVE-2022-0001, apply the relevant patches or updates provided by your system vendor.
What types of systems are affected by CVE-2022-0001?
CVE-2022-0001 affects various Intel processors, including Atom and Xeon models, as well as certain versions of Linux and Windows operating systems.
Can CVE-2022-0001 be exploited remotely?
Yes, CVE-2022-0001 can potentially be exploited remotely if the attacker is able to gain access to the affected systems.
What is the nature of the vulnerability in CVE-2022-0001?
CVE-2022-0001 involves a Branch History Injection vulnerability that could lead to unauthorized code execution by manipulating branch predictions.