CVE-2022-4543: Infoleak
A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 5.10.189.1-1 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 5.15.182.1-1
Event History
Frequently Asked Questions
What level of access does an attacker need?
Exploitation requires local access with low privileges. No user interaction is required.
Which systems should be prioritized for review?
Prioritize Intel systems using KPTI, particularly systems running the listed Linux kernel or Microsoft azl3, cbl2, and cm1 kernel builds. The issue concerns disclosure of the kernel address-space layout randomization base rather than direct modification or availability impact.