logo

EntryBleed: Breaking KASLR under KPTI with Prefetch (CVE-2022-4543)

ID: c1c45977-791a-59b9-8a03-6247a2c177c4

STIX ID: report--c1c45977-791a-59b9-8a03-6247a2c177c4

Feed Name: Will's Root

Threat Score
65/100

Date Published: 2022-12-16

Date Updated: 2026-04-19

Author: Unknown

...
...

This report details "EntryBleed," a local information‑leak vulnerability in Linux Kernel Page Table Isolation (KPTI) that lets unprivileged attackers recover the kernel's KASLR base using a prefetch/TLB timing side channel. The author provides a compact proof-of-concept, demonstrates successful results on multiple Intel CPUs and KVM guests, notes assignment of CVE-2022-4543, and suggests mitigation approaches such as randomizing or relocating syscall/entry handlers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.