rpm package
opensuse/ucode-intel&distro=openSUSE Tumbleweed
pkg:rpm/opensuse/ucode-intel&distro=openSUSE%20Tumbleweed
Vulnerabilities (76)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2023-45745 | Hig | 7.9 | < 20240514-1.1 | 20240514-1.1 | May 16, 2024 | Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access. | |
| CVE-2023-45733 | Low | 2.8 | < 20240514-1.1 | 20240514-1.1 | May 16, 2024 | Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partial information disclosure via local access. | |
| CVE-2023-43490 | Med | 5.3 | < 20240312-1.1 | 20240312-1.1 | Mar 14, 2024 | Incorrect calculation in microcode keying mechanism for some Intel(R) Xeon(R) D Processors with Intel(R) SGX may allow a privileged user to potentially enable information disclosure via local access. | |
| CVE-2023-39368 | Med | 6.5 | < 20240312-1.1 | 20240312-1.1 | Mar 14, 2024 | Protection mechanism failure of bus lock regulator for some Intel(R) Processors may allow an unauthenticated user to potentially enable denial of service via network access. | |
| CVE-2023-38575 | Med | 5.5 | < 20240312-1.1 | 20240312-1.1 | Mar 14, 2024 | Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access. | |
| CVE-2023-28746 | Med | 6.5 | < 20240312-1.1 | 20240312-1.1 | Mar 14, 2024 | Information exposure through microarchitectural state after transient execution from some register files for some Intel(R) Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| CVE-2023-22655 | Med | 6.1 | < 20240312-1.1 | 20240312-1.1 | Mar 14, 2024 | Protection mechanism failure in some 3rd and 4th Generation Intel(R) Xeon(R) Processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access. | |
| CVE-2023-23583 | Hig | 8.8 | < 20231114-1.1 | 20231114-1.1 | Nov 14, 2023 | Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access. | |
| CVE-2023-23908 | Med | 6.0 | < 20230808-1.1 | 20230808-1.1 | Aug 11, 2023 | Improper access control in some 3rd Generation Intel(R) Xeon(R) Scalable processors may allow a privileged user to potentially enable information disclosure via local access. | |
| CVE-2022-41804 | Hig | 7.2 | < 20230808-1.1 | 20230808-1.1 | Aug 11, 2023 | Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| CVE-2022-40982 | Med | 6.5 | < 20230808-1.1 | 20230808-1.1 | Aug 11, 2023 | Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| CVE-2022-38090 | Med | 6.0 | < 20230214-1.1 | 20230214-1.1 | Feb 16, 2023 | Improper isolation of shared resources in some Intel(R) Processors when using Intel(R) Software Guard Extensions may allow a privileged user to potentially enable information disclosure via local access. | |
| CVE-2022-33972 | Med | 6.1 | < 20230214-2.1 | 20230214-2.1 | Feb 16, 2023 | Incorrect calculation in microcode keying mechanism for some 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable information disclosure via local access. | |
| CVE-2022-33196 | Hig | 7.2 | < 20230214-1.1 | 20230214-1.1 | Feb 16, 2023 | Incorrect default permissions in some memory controller configurations for some Intel(R) Xeon(R) Processors when using Intel(R) Software Guard Extensions which may allow a privileged user to potentially enable escalation of privilege via local access. | |
| CVE-2022-21216 | Hig | 7.5 | < 20230214-1.1 | 20230214-1.1 | Feb 16, 2023 | Insufficient granularity of access control in out-of-band management in some Intel(R) Atom and Intel Xeon Scalable Processors may allow a privileged user to potentially enable escalation of privilege via adjacent network access. | |
| CVE-2022-21233 | Med | 5.5 | < 20220809-1.1 | 20220809-1.1 | Aug 18, 2022 | Improper isolation of shared resources in some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access. | |
| CVE-2022-21151 | Med | 5.5 | < 20220510-1.1 | 20220510-1.1 | May 12, 2022 | Processor optimization removal or modification of security-critical code for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| CVE-2021-33120 | Med | 5.4 | < 20220207-1.1 | 20220207-1.1 | Feb 9, 2022 | Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to potentially enable information disclosure or cause denial of service via network access. | |
| CVE-2021-0145 | Med | 5.5 | < 20220207-1.1 | 20220207-1.1 | Feb 9, 2022 | Improper initialization of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| CVE-2021-0127 | Med | 5.5 | < 20220207-1.1 | 20220207-1.1 | Feb 9, 2022 | Insufficient control flow management in some Intel(R) Processors may allow an authenticated user to potentially enable a denial of service via local access. |
- affected < 20240514-1.1fixed 20240514-1.1
Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access.
- affected < 20240514-1.1fixed 20240514-1.1
Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partial information disclosure via local access.
- affected < 20240312-1.1fixed 20240312-1.1
Incorrect calculation in microcode keying mechanism for some Intel(R) Xeon(R) D Processors with Intel(R) SGX may allow a privileged user to potentially enable information disclosure via local access.
- affected < 20240312-1.1fixed 20240312-1.1
Protection mechanism failure of bus lock regulator for some Intel(R) Processors may allow an unauthenticated user to potentially enable denial of service via network access.
- affected < 20240312-1.1fixed 20240312-1.1
Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
- affected < 20240312-1.1fixed 20240312-1.1
Information exposure through microarchitectural state after transient execution from some register files for some Intel(R) Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- affected < 20240312-1.1fixed 20240312-1.1
Protection mechanism failure in some 3rd and 4th Generation Intel(R) Xeon(R) Processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access.
- affected < 20231114-1.1fixed 20231114-1.1
Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.
- affected < 20230808-1.1fixed 20230808-1.1
Improper access control in some 3rd Generation Intel(R) Xeon(R) Scalable processors may allow a privileged user to potentially enable information disclosure via local access.
- affected < 20230808-1.1fixed 20230808-1.1
Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
- affected < 20230808-1.1fixed 20230808-1.1
Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- affected < 20230214-1.1fixed 20230214-1.1
Improper isolation of shared resources in some Intel(R) Processors when using Intel(R) Software Guard Extensions may allow a privileged user to potentially enable information disclosure via local access.
- affected < 20230214-2.1fixed 20230214-2.1
Incorrect calculation in microcode keying mechanism for some 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable information disclosure via local access.
- affected < 20230214-1.1fixed 20230214-1.1
Incorrect default permissions in some memory controller configurations for some Intel(R) Xeon(R) Processors when using Intel(R) Software Guard Extensions which may allow a privileged user to potentially enable escalation of privilege via local access.
- affected < 20230214-1.1fixed 20230214-1.1
Insufficient granularity of access control in out-of-band management in some Intel(R) Atom and Intel Xeon Scalable Processors may allow a privileged user to potentially enable escalation of privilege via adjacent network access.
- affected < 20220809-1.1fixed 20220809-1.1
Improper isolation of shared resources in some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
- affected < 20220510-1.1fixed 20220510-1.1
Processor optimization removal or modification of security-critical code for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- affected < 20220207-1.1fixed 20220207-1.1
Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to potentially enable information disclosure or cause denial of service via network access.
- affected < 20220207-1.1fixed 20220207-1.1
Improper initialization of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- affected < 20220207-1.1fixed 20220207-1.1
Insufficient control flow management in some Intel(R) Processors may allow an authenticated user to potentially enable a denial of service via local access.
Page 3 of 4