Database/Kernel, userspace & hypervisor
AMD CPU (Retbleed): Retbleed: arbitrary speculative code execution via return instructions
CVSS 5.6CVE-2022-29900Kernel, userspace & hypervisorcurated
Impact
Retbleed: arbitrary speculative code execution via return instructions - cross-domain secret disclosure
Who can reach it
Any tenant process in a container; tenant VM guest
What to do
Kernel mitigation (retbleed=) + reboot. Standing performance cost, historically severe on Zen 1/2 - measure before enabling fleet-wide
References
Related entries
- Intel CPU (Retbleed): Retbleed on Intel - speculative execution of return instructions leaks across privilege boundariesCVE-2022-29901 · Intel CPU (Retbleed)Medium
- AMD CPU (Inception / SRSO): Inception: Speculative Return Stack OverflowCVE-2023-20569 · AMD CPU (Inception / SRSO)Medium
- QEMU (net): Triggerable assertion via a race on NIC hot-unplug - guest can abort the host QEMU processCVE-2023-3301 · QEMU (net)Medium
- Xen / Intel CPU (ITS): Indirect Target Selection - speculative execution leak across privilege domains on Intel partsCVE-2024-28956 · Xen / Intel CPU (ITS)Medium
- AMD CPU (TSA-L1): Transient Scheduler Attack - store-to-load forwarding leak across contexts on Zen 3/4CVE-2024-36350 · AMD CPU (TSA-L1)Medium
- AMD CPU (TSA-SQ): Transient Scheduler Attack via the store queue - cross-context information leakCVE-2024-36357 · AMD CPU (TSA-SQ)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.