CVE Published: 16/02/2023 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: intel |
Vendor: n/a |
Product: Intel(R) SGX SDK software for Linux Status : PUBLISHED
CVE-2022-26841 Description
Insufficient control flow management for the Intel(R) SGX SDK software for Linux before version 2.16.100.1 may allow an authenticated user to potentially enable information disclosure via local access.
Metrics
CVSS Version: 3.1 |
Base Score: 2.5 LOW Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
l➤ Exploitability Metrics: Attack Vector (AV)* LOCAL Attack Complexity (AC)* HIGH Privileges Required (PR)* LOW User Interaction (UI)* NONE Scope (S)* UNCHANGED