AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2022-23960.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSMEDIUM / 5.6CVSS 3.1 · nvd@nist.gov
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSModifiedModified Oct 08, 2026

Disclosure summary

Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB. An attacker can leverage the shared branch history in the Branch History Buffer (BHB) to influence mispredicted branches. Then, cache allocation can allow the attacker to obtain sensitive information.

Source-reported weakness categories

NVD-CWE-noinfo

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

NIST National Vulnerability Database · NVD-CVE-2022-23960

Open original source · Updated Oct 08, 2026

Only CPE matches marked vulnerable=true are indexed. AND/OR platform conditions must be checked in the original NVD record.

VendorProduct / associationVersion / bounds
xenxen-
armcortex-r7_firmware-
armcortex-r8_firmware-
armcortex-a57_firmware-
armcortex-a65_firmware-
armcortex-a65ae_firmware-
armcortex-a710_firmware-
armcortex-a72_firmware-
armcortex-a73_firmware-
armcortex-a75_firmware-
armcortex-a76_firmware-
armcortex-a76ae_firmware-
armcortex-a77_firmware-
armcortex-a78_firmware-
armcortex-a78ae_firmware-
armcortex-x1_firmware-
armcortex-x2_firmware-
armneoverse-e1_firmware-
armneoverse-v1_firmware-
armneoverse_n1_firmware-
armneoverse_n2_firmware-
debiandebian_linux9.0
debiandebian_linux10.0

Original records & references

PUBLISHED 2022-03-12T19:15:07-05:00
MODIFIED 2026-10-08T18:17:19-04:00
INGESTED 2026-10-10T20:50:21-04:00