CVE-2022-41804
published 2023-08-11CVE-2022-41804: Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation…
PriorityP426medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.31%
23.2th percentile
Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | intel-microcode | < intel-microcode 3.20230808.1~deb12u1 (bookworm) | intel-microcode 3.20230808.1~deb12u1 (bookworm) |
| fedoraproject | fedora | — | — |
CVSS provenance
nvdv3.16.7MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
osv6.7MEDIUM
vendor_debian7.2HIGH
vendor_redhat7.2HIGH
vendor_ubuntu6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Intel Microcode vulnerabilities
vendor_ubuntu·2023-08-14·CVSS 6.5
CVE-2022-40982 [MEDIUM] Intel Microcode vulnerabilities
Title: Intel Microcode vulnerabilities
Summary: Several security issues were fixed in Intel Microcode.
Daniel Moghimi discovered that some Intel(R) Processors did not properly clear
microarchitectural state after speculative execution of various instructions. A
local unprivileged user could use this to obtain to sensitive
information. (CVE-2022-40982)
It was discovered that some Intel(R) Xeon(R) Processors did not properly
restrict error injection for Intel(R) SGX or Intel(R) TDX. A local privileged
user could use this to further escalate their privileges. (CVE-2022-41804)
It was discovered that some 3rd Generation Intel(R) Xeon(R) Scalable processors
did not properly restrict access in some situations. A local privileged attacker
could use this to obtain sensitive information. (CVE-20
Red Hat
hw: Intel: Unauthorized error injection in Intel SGX or Intel TDX
vendor_redhat·2023-08-08·CVSS 7.2
CVE-2022-41804 [HIGH] CWE-1334 hw: Intel: Unauthorized error injection in Intel SGX or Intel TDX
hw: Intel: Unauthorized error injection in Intel SGX or Intel TDX
Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
A flaw was found in hw. Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) processors may allow a privileged user to potentially enable escalation of privilege via local access.
Mitigation: Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Package: microcode_ctl (Red Hat Enterprise Linux 6) - Affected
Package: kernel (
Debian
CVE-2022-41804: intel-microcode - Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) X...
vendor_debian·2022·CVSS 7.2
CVE-2022-41804 [HIGH] CVE-2022-41804: intel-microcode - Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) X...
Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20230808.1~deb12u1)
bullseye: resolved (fixed in 3.20230808.1~deb11u1)
forky: resolved (fixed in 3.20230808.1)
sid: resolved (fixed in 3.20230808.1)
trixie: resolved (fixed in 3.20230808.1)
OSV
intel-microcode vulnerabilities
osv·2023-08-14·CVSS 6.5
CVE-2022-40982 [MEDIUM] intel-microcode vulnerabilities
intel-microcode vulnerabilities
Daniel Moghimi discovered that some Intel(R) Processors did not properly clear
microarchitectural state after speculative execution of various instructions. A
local unprivileged user could use this to obtain to sensitive
information. (CVE-2022-40982)
It was discovered that some Intel(R) Xeon(R) Processors did not properly
restrict error injection for Intel(R) SGX or Intel(R) TDX. A local privileged
user could use this to further escalate their privileges. (CVE-2022-41804)
It was discovered that some 3rd Generation Intel(R) Xeon(R) Scalable processors
did not properly restrict access in some situations. A local privileged attacker
could use this to obtain sensitive information. (CVE-2023-23908)
GHSA
GHSA-5vqh-8734-g6m4: Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable es
ghsa_unreviewed·2023-08-11
CVE-2022-41804 [MEDIUM] CWE-1334 GHSA-5vqh-8734-g6m4: Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable es
Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
OSV
CVE-2022-41804: Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable es
osv·2023-08-11·CVSS 6.7
CVE-2022-41804 [MEDIUM] CVE-2022-41804: Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable es
Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
No detection rules found.
No public exploits indexed.
http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00837.htmlhttps://lists.debian.org/debian-lts-announce/2023/08/msg00026.htmlhttps://lists.fedoraproject.org/archives/list/[email protected]/message/HKREYYTWUY7ZDNIB2N6H5BUJ3LE5VZPE/https://lists.fedoraproject.org/archives/list/[email protected]/message/OL7WI2TJCWSZIQP2RIOLWHOKLM25M44J/https://security.netapp.com/advisory/ntap-20230915-0003/https://www.debian.org/security/2023/dsa-5474http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00837.htmlhttps://lists.debian.org/debian-lts-announce/2023/08/msg00026.htmlhttps://lists.fedoraproject.org/archives/list/[email protected]/message/HKREYYTWUY7ZDNIB2N6H5BUJ3LE5VZPE/https://lists.fedoraproject.org/archives/list/[email protected]/message/OL7WI2TJCWSZIQP2RIOLWHOKLM25M44J/https://security.netapp.com/advisory/ntap-20230915-0003/https://www.debian.org/security/2023/dsa-5474
2023-08-11
Published