GhostRace – New Data Leak Vulnerability Affects Modern CPUs
ID: 3ea44f4d-87b0-5356-a172-e8f965d25590
STIX ID: report--3ea44f4d-87b0-5356-a172-e8f965d25590
Feed Name: The Hacker News
Researchers disclosed GhostRace (CVE-2024-2193), a Spectre v1–style transient execution vulnerability that combines branch misprediction and race conditions to create Speculative Race Conditions (SRCs) and Speculative Concurrent Use-After-Free (SCUAF) gadgets, allowing an attacker with CPU access to exfiltrate arbitrary host memory. The report outlines affected synchronization patterns across microarchitectures (x86, ARM, RISC-V), vendor and hypervisor reactions (AMD guidance, Xen hardening), and notes this is a hardware/architecture-level issue with mitigations aligning with existing Spectre protections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
