· @bcoles
10 followers · 1 posts · Server infosec.exchange

I've added support for prefetch bypass (CVE-2022-4543) to [KASLD](github.com/bcoles/kasld).

Should work for Intel x86_64 CPUs (with KPTI enabled or disabled) and AMD x86_64 CPUs with KPTI disabled.

#entrybleed #kaslr

Last updated 3 years ago

Thorsten Leemhuis (1/4) · @kernellogger
1205 followers · 302 posts · Server fosstodon.org

, a bug that allows low privileged attackers to break KASLR under KPTI for Intel based systems:

willsroot.io/2022/12/entryblee

"[…] I’ve discovered that Linux KPTI has implementation issues that can allow any unprivileged local attacker to bypass KASLR on Intel based systems. While technically only an info-leak, it still provides a primitive that has serious implications for bugs previously considered too hard to exploit and was assigned CVE-2022-4543. […]"

#entrybleed #linux #kernel #linuxkernel

Last updated 3 years ago