MEDIUM🇵🇱 Wersja polska

CVE-2021-26313

CVSS 5.5v3.1pub. 2021-06-09upd. 2024-11-21

Potential speculative code store bypass in all supported CPU products, in conjunction with software vulnerabilities relating to speculative execution of overwritten instructions, may cause an incorrect speculation and could result in data leakage.

CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
  • Amd Ryzen 5 5600x

    HW
    Amd
    all versions
  • Amd Ryzen 7 2700x

    HW
    Amd
    all versions
  • Amd Ryzen Threadripper 2990wx

    HW
    Amd
    all versions
  • Arm Cortex A72

    HW
    Arm
    all versions
  • Broadcom Bcm2711

    HW
    Broadcom
    all versions
  • Debian

    OS
    Debian
    10.0
  • Intel Core I7 10700k

    HW
    Intel
    all versions
  • Intel Core I7 7700k

    HW
    Intel
    all versions
  • Intel Core I9 9900k

    HW
    Intel
    all versions
  • Intel Xeon Silver 4214

    HW
    Intel
    all versions
  • Xen

    OS
    Xen
    all versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2026-24061CRITICAL9.8⚠ KEVPL ✓same product

GNU Inetutils telnetd: ominięcie uwierzytelnienia przez zmienną USER

CVE-2025-32463CRITICAL9.3⚠ KEVPL ✓same product

Sudo: eskalacja uprawnień do root poprzez opcję --chroot (CVE-2025-32463)

CVE-2025-49113CRITICAL9.9⚠ KEVPL ✓same product

RCE przez deserializację PHP w Roundcube Webmail (parametr _from)

CVE-2025-32433CRITICAL10.0⚠ KEVPL ✓same product

Erlang/OTP SSH — nieuwierzytelniony RCE (CVSS 10.0)

CVE-2025-24201CRITICAL10.0⚠ KEVPL ✓same product

Apple WebKit: out-of-bounds write umożliwiający ucieczkę z sandbox przeglądarki