Vulnerability Details CVE-2022-26841
Insufficient control flow management for the Intel(R) SGX SDK software for Linux before version 2.16.100.1 may allow an authenticated user to potentially enable information disclosure via local access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 27.9%
CVSS Severity
CVSS v3 Score 2.5
Products affected by CVE-2022-26841
-
cpe:2.3:a:intel:sgx_sdk:-
-
cpe:2.3:a:intel:sgx_sdk:1.6.101.33070
-
cpe:2.3:a:intel:sgx_sdk:1.7.100.35600
-
cpe:2.3:a:intel:sgx_sdk:1.8.105.40539
-
cpe:2.3:a:intel:sgx_sdk:1.9.105.42474
-
cpe:2.3:a:intel:sgx_sdk:1.9.106.43403
-
cpe:2.3:a:intel:sgx_sdk:1.9.6
-
cpe:2.3:a:intel:sgx_sdk:2.0.1
-
cpe:2.3:a:intel:sgx_sdk:2.1
-
cpe:2.3:a:intel:sgx_sdk:2.1.2
-
cpe:2.3:a:intel:sgx_sdk:2.12
-
cpe:2.3:a:intel:sgx_sdk:2.12.100.4
-
cpe:2.3:a:intel:sgx_sdk:2.13
-
cpe:2.3:a:intel:sgx_sdk:2.13.100.4
-
cpe:2.3:a:intel:sgx_sdk:2.15.100.1
-
cpe:2.3:a:intel:sgx_sdk:2.2.100
-
cpe:2.3:a:intel:sgx_sdk:2.6.100.1
-
cpe:2.3:a:intel:sgx_sdk:2.8.100.1
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-