CVE-2023-24588
Severity
4.6MEDIUM
EPSS
0.1%
top 67.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 14
Description
Exposure of sensitive information to an unauthorized actor in firmware for some Intel(R) Optane(TM) SSD products may allow an unauthenticated user to potentially enable information disclosure via physical access.
CVSS vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:NExploitability: 0.7 | Impact: 4.7
Affected Packages6 packages
🔴Vulnerability Details
2CVEList▶
CVE-2023-24588: Exposure of sensitive information to an unauthorized actor in firmware for some Intel(R) Optane(TM) SSD products may allow an unauthenticated user to↗2023-11-14
GHSA▶
GHSA-ffwh-fwc7-gh76: Exposure of sensitive information to an unauthorized actor in firmware for some Intel(R) Optane(TM) SSD products may allow an unauthenticated user to↗2023-11-14