Observable timing discrepancy in Intel(R) IPP before version 2020 update 1 may allow authorized user to potentially enable information disclosure via local access.
References
| Link | Resource |
|---|---|
| https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00477.html | Patch Vendor Advisory |
| https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00477.html | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 05:41
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00477.html - Patch, Vendor Advisory |
28 Jun 2021, 18:03
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_4:*:*:*:*:*:* cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2020:-:*:*:*:*:*:* cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:-:*:*:*:*:*:* cpe:2.3:a:intel:sgx_psw:*:*:*:*:*:linux:*:* cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_2:*:*:*:*:*:* cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_1:*:*:*:*:*:* cpe:2.3:a:intel:sgx_sdk:*:*:*:*:*:linux:*:* cpe:2.3:a:intel:sgx_dcap:*:*:*:*:*:windows:*:* cpe:2.3:a:intel:sgx_dcap:*:*:*:*:*:linux:*:* cpe:2.3:a:intel:sgx_sdk:*:*:*:*:*:windows:*:* cpe:2.3:a:intel:sgx_psw:*:*:*:*:*:windows:*:* cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_3:*:*:*:*:*:* |
|
| References | (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00477.html - Patch, Vendor Advisory | |
| CWE | CWE-203 | |
| CVSS |
v2 : v3 : |
v2 : 2.1
v3 : 4.7 |
09 Jun 2021, 20:19
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2021-06-09 20:15
Updated : 2024-11-21 05:41
NVD link : CVE-2021-0001
Mitre link : CVE-2021-0001
CVE.ORG link : CVE-2021-0001
JSON object : View
Products Affected
intel
- sgx_sdk
- sgx_dcap
- integrated_performance_primitives_cryptography
- sgx_psw
CWE
CWE-203
Observable Discrepancy
