Vulnerabilities > Intel > SGX SDK > 2.12.100.4

DATE CVE VULNERABILITY TITLE RISK
2023-02-16 CVE-2022-26509 Improper Handling of Exceptional Conditions vulnerability in Intel SGX SDK
Improper conditions check in the Intel(R) SGX SDK software may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-755
5.5
2023-02-16 CVE-2022-26841 Unspecified vulnerability in Intel SGX SDK
Insufficient control flow management for the Intel(R) SGX SDK software for Linux before version 2.16.100.1 may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel
5.5
2022-11-11 CVE-2022-27499 Operation on a Resource after Expiration or Release vulnerability in Intel SGX SDK
Premature release of resource during expected lifetime in the Intel(R) SGX SDK software may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-672
4.4
2022-06-15 CVE-2022-21166 Incomplete Cleanup vulnerability in multiple products
Incomplete cleanup in specific special register write operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
xen fedoraproject intel vmware debian CWE-459
5.5
2022-06-15 CVE-2022-21123 Incomplete Cleanup vulnerability in multiple products
Incomplete cleanup of multi-core shared buffers for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
xen fedoraproject intel vmware debian CWE-459
5.5
2022-06-15 CVE-2022-21125 Incomplete Cleanup vulnerability in multiple products
Incomplete cleanup of microarchitectural fill buffers on some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
xen fedoraproject intel vmware debian CWE-459
5.5
2022-06-15 CVE-2022-21127 Incomplete Cleanup vulnerability in multiple products
Incomplete cleanup in specific special register read operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
xen intel debian CWE-459
5.5
2021-11-17 CVE-2021-0186 Improper Input Validation vulnerability in Intel products
Improper input validation in the Intel(R) SGX SDK applications compiled for SGX2 enabled processors may allow a privileged user to potentially escalation of privilege via local access.
local
low complexity
intel CWE-20
6.7
2021-06-09 CVE-2021-0001 Information Exposure Through Discrepancy vulnerability in Intel products
Observable timing discrepancy in Intel(R) IPP before version 2020 update 1 may allow authorized user to potentially enable information disclosure via local access.
local
high complexity
intel CWE-203
4.7