Researchers Uncover First Native Spectre v2 Exploit Against Linux Kernel
ID: bddf70b0-a56b-5968-aaff-06ad45c1693e
STIX ID: report--bddf70b0-a56b-5968-aaff-06ad45c1693e
Feed Name: The Hacker News
Threat Score
Researchers disclosed Native Branch History Injection (CVE-2024-2201), described as the first native Spectre v2 exploit against Linux on Intel that can bypass existing mitigations (including unprivileged eBPF and FineIBT) using an "InSpectre Gadget" to find speculative gadgets and leak privileged kernel memory; multiple vendors and hypervisors are impacted, though exploitation requires local CPU resource access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
