CVE-2024-2201

CVSS 3.0 Score 7.5 of 10 (high)

Details

Published Dec 19, 2024
Updated: Jan 9, 2025
CWE ID 404

Summary

CVE-2024-2201 is a newly identified cross-privilege vulnerability affecting Intel systems. This Spectre v2 issue enables attackers to circumvent all currently implemented mitigations, including the recent Fine-grained Indirect Branch Tracking (Fine-IBT), and potentially leak sensitive Linux kernel memory. The vulnerability poses a significant threat to system security as it undermines the effectiveness of previously implemented countermeasures. The full extent and impact of this issue are still under investigation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share