vulnerability
New Spectre-v2 BTR Attack Leaks Linux Memory Despite Existing Defenses
HighCVSS 7.0
Summary
Researchers at VUSec and Scuola Superiore Sant'Anna have discovered a new Spectre v2 variant, BTR, that exploits stale branch prediction entries in JIT engines across multiple CPU vendors, including Linux kernels and GraalVM. The discovery highlights a fundamental flaw in how modern CPUs handle self-modifying/JITted code, leaving a potential avenue for future vulnerabilities.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
