SB2023111057 - Missing speculative execution protections in FreeBSD



SB2023111057 - Missing speculative execution protections in FreeBSD

Published: November 10, 2023

Security Bulletin ID SB2023111057
Severity
Low
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Physical access
Highest impact Code execution

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 security vulnerability.


1) Missing Protection Mechanism for Alternate Hardware Interface (CVE-ID: CVE-2023-5370)

The vulnerability allows a local user to compromise the affected system.

The vulnerability exists due to a missing check for CPU 0 on AArch64 hardware when deciding whether to use the Secure Monitor Call Calling Convention (SMCCC) mechanism on a given CPU. An attacker with physical access to the system can compromise the affected system.


Remediation

Install update from vendor's website.