CVE-2024-2201
CVSS 3.0 Score 7.5 of 10 (high)
Details
Published Dec 19, 2024
Updated: Jan 9, 2025
CWE ID 404
Summary
CVE-2024-2201 is a newly identified cross-privilege vulnerability affecting Intel systems. This Spectre v2 issue enables attackers to circumvent all currently implemented mitigations, including the recent Fine-grained Indirect Branch Tracking (Fine-IBT), and potentially leak sensitive Linux kernel memory. The vulnerability poses a significant threat to system security as it undermines the effectiveness of previously implemented countermeasures. The full extent and impact of this issue are still under investigation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.