VYPR

SGX

by Intel

CVEs (12)

  • CVE-2024-23918HigNov 13, 2024
    risk 0.57cvss 8.8epss 0.00

    Improper conditions check in some Intel(R) Xeon(R) processor memory controller configurations when using Intel(R) SGX may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2020-0561HigFeb 13, 2020
    risk 0.51cvss 7.8epss 0.00

    Improper initialization in the Intel(R) SGX SDK before v2.6.100.1 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2019-14566HigNov 14, 2019
    risk 0.51cvss 7.8epss 0.00

    Insufficient input validation in Intel(R) SGX SDK multiple Linux and Windows versions may allow an authenticated user to enable information disclosure, escalation of privilege or denial of service via local access.

  • CVE-2019-14565HigNov 14, 2019
    risk 0.51cvss 7.8epss 0.00

    Insufficient initialization in Intel(R) SGX SDK Windows versions 2.4.100.51291 and earlier, and Linux versions 2.6.100.51363 and earlier, may allow an authenticated user to enable information disclosure, escalation of privilege or denial of service via local access.

  • CVE-2018-3615HigAug 14, 2018
    risk 0.48cvss 7.3epss 0.06

    Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.

  • CVE-2024-21820HigNov 13, 2024
    risk 0.47cvss 7.2epss 0.00

    Incorrect default permissions in some Intel(R) Xeon(R) processor memory controller configurations when using Intel(R) SGX may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-41804HigAug 11, 2023
    risk 0.47cvss 7.2epss 0.00

    Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2024-36293MedFeb 12, 2025
    risk 0.42cvss 6.5epss 0.00

    Improper access control in the EDECCSSA user leaf function for some Intel(R) Processors with Intel(R) SGX may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2023-22655MedMar 14, 2024
    risk 0.40cvss 6.1epss 0.00

    Protection mechanism failure in some 3rd and 4th Generation Intel(R) Xeon(R) Processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2019-0157MedJun 13, 2019
    risk 0.36cvss 5.5epss 0.00

    Insufficient input validation in the Intel(R) SGX driver for Linux may allow an authenticated user to potentially enable a denial of service via local access.

  • CVE-2023-43753MedSep 16, 2024
    risk 0.34cvss 5.3epss 0.00

    Improper conditions check in some Intel(R) Processors with Intel(R) SGX may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2019-0117MedNov 14, 2019
    risk 0.29cvss 4.4epss 0.00

    Insufficient access control in protected memory subsystem for Intel(R) SGX for 6th, 7th, 8th, 9th Generation Intel(R) Core(TM) Processor Families; Intel(R) Xeon(R) Processor E3-1500 v5, v6 Families; Intel(R) Xeon(R) E-2100 & E-2200 Processor Families with Intel(R) Processor…