CVE-2022-21127
15.06.2022, 20:15
Incomplete cleanup in specific special register read operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.Enginsight
| Vendor | Product | Version |
|---|---|---|
| xen | xen | * |
| intel | sgx_dcap | 𝑥 < 1.14.100.3 |
| intel | sgx_dcap | 𝑥 < 1.14.100.3 |
| intel | sgx_psw | 𝑥 < 2.16.100.3 |
| intel | sgx_psw | 𝑥 < 2.17.100.3 |
| intel | sgx_sdk | 𝑥 < 2.16.100.3 |
| intel | sgx_sdk | 𝑥 < 2.17.100.3 |
| debian | debian_linux | 10.0 |
| debian | debian_linux | 11.0 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| intel-microcode |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| intel-microcode |
|
Common Weakness Enumeration
References