Downfall and Zenbleed: Googlers helping secure the ecosystem
ID: 8efe4bef-b6c3-5c6e-b1bd-9f22e4620830
STIX ID: report--8efe4bef-b6c3-5c6e-b1bd-9f22e4620830
Feed Name: Google Online Security Blog
Threat Score
Google details two CPU vulnerabilities—Downfall (CVE-2022-40982) impacting Intel Core (6th–11th Gen) and Zenbleed (CVE-2023-20593) impacting AMD Zen2—that leak stale data from internal SIMD hardware registers via speculative execution (Gather and Zeroupper behaviors), outlines their technical roots, provides mitigation and disclosure timelines, and describes coordinated industry responses and fixes.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
