EntryBleed: Breaking KASLR under KPTI with Prefetch (CVE-2022-4543)
ID: c1c45977-791a-59b9-8a03-6247a2c177c4
STIX ID: report--c1c45977-791a-59b9-8a03-6247a2c177c4
Feed Name: Will's Root
Threat Score
This report details "EntryBleed," a local information‑leak vulnerability in Linux Kernel Page Table Isolation (KPTI) that lets unprivileged attackers recover the kernel's KASLR base using a prefetch/TLB timing side channel. The author provides a compact proof-of-concept, demonstrates successful results on multiple Intel CPUs and KVM guests, notes assignment of CVE-2022-4543, and suggests mitigation approaches such as randomizing or relocating syscall/entry handlers.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
