MEDIUM🇵🇱 Wersja polska

CVE-2021-26314

CVSS 5.5v3.1pub. 2021-06-09upd. 2024-11-21

Potential floating point value injection in all supported CPU products, in conjunction with software vulnerabilities relating to speculative execution with incorrect floating point results, may cause the use of incorrect data from FPVI and may result in data leakage.

CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
  • Amd Ryzen 5 5600x

    HW
    Amd
    all versions
  • Amd Ryzen 7 2700x

    HW
    Amd
    all versions
  • Amd Ryzen Threadripper 2990wx

    HW
    Amd
    all versions
  • Arm Cortex A72

    HW
    Arm
    all versions
  • Broadcom Bcm2711

    HW
    Broadcom
    all versions
  • Fedora Project Fedora

    OS
    Fedoraproject
    3334
  • Intel Core I7 10700k

    HW
    Intel
    all versions
  • Intel Core I7 7700k

    HW
    Intel
    all versions
  • Intel Core I9 9900k

    HW
    Intel
    all versions
  • Intel Xeon Silver 4214

    HW
    Intel
    all versions
  • Xen

    OS
    Xen
    all versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2024-4577CRITICAL9.8⚠ KEVPL ✓same product

PHP CGI argument injection – RCE na Windows przez mechanizm Best-Fit

CVE-2024-5274CRITICAL9.6⚠ KEVPL ✓same product

Type Confusion w V8 (Google Chrome) — RCE przez spreparowaną stronę HTML

CVE-2024-4947CRITICAL9.6⚠ KEVPL ✓same product

Type Confusion w silniku V8 Chrome — zdalne wykonanie kodu (RCE)

CVE-2024-4671CRITICAL9.6⚠ KEVPL ✓same product

Use-after-free w Google Chrome Visuals umożliwiający ucieczkę z sandbox

CVE-2023-6345CRITICAL9.6⚠ KEVPL ✓same product

Integer overflow w Skia w Google Chrome — sandbox escape