Vulnerability Details CVE-2019-14566
Insufficient input validation in Intel(R) SGX SDK multiple Linux and Windows versions may allow an authenticated user to enable information disclosure, escalation of privilege or denial of service via local access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 33.7%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 4.6
Products affected by CVE-2019-14566
-
cpe:2.3:a:intel:software_guard_extensions_sdk:2.2.100.45311
-
cpe:2.3:a:intel:software_guard_extensions_sdk:2.3.100.46354
-
cpe:2.3:a:intel:software_guard_extensions_sdk:2.3.100.49777
-
cpe:2.3:a:intel:software_guard_extensions_sdk:2.3.101.50222
-
cpe:2.3:a:intel:software_guard_extensions_sdk:2.4.100.48163
-
cpe:2.3:a:intel:software_guard_extensions_sdk:2.4.100.51291
-
cpe:2.3:a:intel:software_guard_extensions_sdk:2.5.100.49891
-
cpe:2.3:a:intel:software_guard_extensions_sdk:2.6.100.51363
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-