CVE-2023-45733Hardware Logic Contains Race Conditions in Intel-microcode

Severity
2.8LOWNVD
OSV6.1
EPSS
0.0%
top 96.79%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 16
Latest updateMay 29

Description

Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partial information disclosure via local access.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:NExploitability: 1.1 | Impact: 1.4

Affected Packages1 packages

debiandebian/intel-microcode< intel-microcode 3.20240514.1~deb12u1 (bookworm)

🔴Vulnerability Details

3
OSV
intel-microcode vulnerabilities2024-05-29
OSV
CVE-2023-45733: Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partial information disclosu2024-05-16
GHSA
GHSA-fg3p-42cv-c5cm: Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partial information disclosu2024-05-16

📋Vendor Advisories

3
Ubuntu
Intel Microcode vulnerabilities2024-05-29
Red Hat
intel-microcode: Race conditions in some Intel(R) Processors2024-05-14
Debian
CVE-2023-45733: intel-microcode - Hardware logic contains race conditions in some Intel(R) Processors may allow an...2023