PT-2023-9408 · Intel+4 · Intel Processors+4

Joseph Nuzman

·

Published

2023-02-14

·

Updated

2025-01-28

·

CVE-2022-38090

CVSS v3.1

6.0

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Intel(R) Processors (affected versions not specified)
Description The issue is related to improper isolation of shared resources in some Intel(R) Processors when using Intel(R) Software Guard Extensions, which may allow a privileged user to potentially enable information disclosure via local access. This could lead to a privileged user gaining access to confidential data.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insecure Storage of Sensitive Information

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-07357
CVE-2022-38090
DLA-3379-1
MGASA-2023-0085
OESA-2023-1548
OESA-2023-1549
OESA-2023-1550
OESA-2023-1553
OESA-2023-1554
OPENSUSE-SU-2024:12704-1
ROSA-SA-2023-2228
SUSE-SU-2023:0454-1
SUSE-SU-2023:0455-1
SUSE-SU-2023:0456-1
SUSE-SU-2023:0568-1
USN-5886-1

Affected Products

Astra Linux
Intel Processors
Linuxmint
Suse
Ubuntu