CVE-2022-26083
published 2025-02-14CVE-2022-26083: Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021.5 may allow an unauthenticated user to…
PriorityP335high7.5CVSS 3.1
AVLACHPRLUINSCCHIHAN
EPSS
0.18%
7.3th percentile
Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021.5 may allow an unauthenticated user to potentially enable information disclosure via local access.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | ipp-crypto | — | — |
| intel | integrated_performance_primitives_cryptography | < 2021.5 | 2021.5 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N
vendor_debian7.5LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-97m5-x73g-j7xj: Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021
ghsa_unreviewed·2025-02-14
CVE-2022-26083 [HIGH] CWE-1204 GHSA-97m5-x73g-j7xj: Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021
Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021.5 may allow an unauthenticated user to potentially enable information disclosure via local access.
Debian
CVE-2022-26083: ipp-crypto - Generation of weak initialization vector in an Intel(R) IPP Cryptography softwar...
vendor_debian·2022·CVSS 7.5
CVE-2022-26083 [HIGH] CVE-2022-26083: ipp-crypto - Generation of weak initialization vector in an Intel(R) IPP Cryptography softwar...
Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021.5 may allow an unauthenticated user to potentially enable information disclosure via local access.
Scope: local
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-02-14
Published