Vulnerability Details CVE-2022-29515
Missing release of memory after effective lifetime in firmware for Intel(R) SPS before versions SPS_E3_06.00.03.035.0 may allow a privileged user to potentially enable denial of service via local access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 3.2%
CVSS Severity
CVSS v3 Score 6.0
Products affected by CVE-2022-29515
-
cpe:2.3:o:intel:server_platform_services_firmware:3.0.6.267.4
-
cpe:2.3:o:intel:server_platform_services_firmware:4.0
-
cpe:2.3:o:intel:server_platform_services_firmware:4.00.04.367
-
cpe:2.3:o:intel:server_platform_services_firmware:4.00.04.382
-
cpe:2.3:o:intel:server_platform_services_firmware:4.00.04.383
-
cpe:2.3:o:intel:server_platform_services_firmware:4.01.00.152.0
-
cpe:2.3:o:intel:server_platform_services_firmware:4.01.02.173
-
cpe:2.3:o:intel:server_platform_services_firmware:4.01.02.174
-
cpe:2.3:o:intel:server_platform_services_firmware:5.00.04.012
-
cpe:2.3:o:intel:server_platform_services_firmware:sps_e3_04.01.00.000.0
-
cpe:2.3:o:intel:server_platform_services_firmware:sps_e3_04.01.04.085.0
-
cpe:2.3:o:intel:server_platform_services_firmware:sps_e3_04.01.04.086.0
-
cpe:2.3:o:intel:server_platform_services_firmware:sps_e3_04.01.04.700.0
-
cpe:2.3:o:intel:server_platform_services_firmware:sps_e3_05.00.04.027.0