Severity
4.4MEDIUM
EPSS
0.1%
top 79.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 17
Latest updateMay 24

Description

Debug message containing addresses of memory transactions in some Intel(R) 10th Generation Core Processors supporting SGX may allow a privileged user to potentially enable information disclosure via local access.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 0.8 | Impact: 3.6

Affected Packages4 packages

NVDintel/core_i31000g1, 1000g4, 1005g1+2
NVDintel/core_i55 versions+4
NVDintel/core_i71060g7, 1065g7+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-959j-89f4-f372: Debug message containing addresses of memory transactions in some Intel(R) 10th Generation Core Processors supporting SGX may allow a privileged user2022-05-24
CVEList
CVE-2020-24491: Debug message containing addresses of memory transactions in some Intel(R) 10th Generation Core Processors supporting SGX may allow a privileged user2021-02-17