Database/Firmware, BMC & network fabric
Arm Neoverse V2 / V3 / V3AE, Cortex-X3 / X4 / X925, C1-series
Impact
Unprivileged code can steer a data-memory-dependent prefetcher into loading a privileged address and then dereferencing its contents, turning the prefetcher into a read oracle for kernel, hypervisor or secure-world memory. On a shared training or inference node this is a slow but real cross-boundary leak - the kind of thing that gets you key material and pointers for a follow-on exploit rather than an instant escape. Neoverse V2 is the Grace core, so GH200 and GB200 head nodes are in scope.
Who can reach it
Any unprivileged process on the host, or unprivileged code inside a guest. No devices, no network, no physical access. A container tenant on a shared Arm node is enough.
What to do
EL3 firmware sets CPUACTLR6_EL1[41]=1 (or IMP_CPUECTLR_EL1[49]=1 on C1-Pro) to disable the offending prefetcher, and exposes it via SMCCC_ARCH_WORKAROUND_4. It is enabled by default in fixed TF-A on vulnerable cores, so the operator task is 'take the OEM firmware build and flash it', with the usual reboot and drain. Disabling a prefetcher is not free - expect single-digit percent regression on pointer-chasing workloads. There is no software-only mitigation you can apply without the firmware update.
References
Related entries
- Junos Space: stored XSS in management UI pages lets an attacker run actions as a logged-in administratorCVE-2025-59990 · Juniper Junos Space (template creation and report generation pages)Medium
- NVIDIA UFM Enterprise: hard-coded key in session management allows information disclosure and privilege escalationCVE-2026-24166 · NVIDIA UFM Enterprise (session management, hard-coded cryptographic key)Medium
- IBM PowerVM PKS and virtual TPM: persistent key seeds produce a reduced-strength AES keyCVE-2026-4936 · IBM PowerVM Hypervisor Platform KeyStore (PKS) and virtual TPM, FW950 / FW1060 / FW1110Medium
- OpenIPMI before 2.0.36: Where this bites an operator is in test and CI infrastructure rather than production nodesCVE-2024-42934 · OpenIPMI before 2.0.36Medium
- Dell SmartFabric OS10: command injection lets a high-privileged remote user run arbitrary OS commandsCVE-2026-35160 · Dell SmartFabric OS10 (switch NOS command handling)Medium
- Eaton UPS 9PX 8000 SP web interface: The device's own web page contains the user password in cleartext in the pageCVE-2018-9279 · Eaton UPS 9PX 8000 SP web interfaceMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.