CWE-1422Base

Exposure of Sensitive Information caused by Incorrect Data Forwarding during Transient Execution

Incomplete in the CWE catalog · 1 CVE mapped

1
CVEs mapped
5.1
Median CVSS
What it is

A processor event or prediction may allow incorrect or stale data to

be forwarded to transient operations, potentially exposing data over a

covert channel.

Recent examples
5.1cvss
CVE-2024-7881

An unprivileged context can trigger a data memory-dependent prefetch engine to fetch the contents of a privileged location and consume those contents as an…

An unprivileged context can trigger a data memory-dependent prefetch engine to fetch the contents of a privileged location and consume those contents as an address that is also dereferenced.

MEDIUMno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-1422
Abstraction
Base
Structure
Simple
Status
Incomplete
References (5)