CVE-2022-33972 — Incorrect Calculation in Intel-microcode
Severity
4.4MEDIUMNVD
OSV6.8
EPSS
0.0%
top 89.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 16
Latest updateFeb 27
Description
Incorrect calculation in microcode keying mechanism for some 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable information disclosure via local access.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 0.8 | Impact: 3.6
Affected Packages1 packages
🔴Vulnerability Details
3OSV▶
CVE-2022-33972: Incorrect calculation in microcode keying mechanism for some 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potent↗2023-02-16
GHSA▶
GHSA-7h77-h852-j28h: Incorrect calculation in microcode keying mechanism for some 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potent↗2023-02-16