First published: Thu Jan 10 2019(Updated: )
Improper file verification in install routine for Intel(R) SGX SDK and Platform Software for Windows before 2.2.100 may allow an escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel SGX Platform Software (PSW) | <2.2.100 | |
Microsoft Windows | ||
Intel SGX SDK | <2.2.100 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2018-18098.
The severity of CVE-2018-18098 is high with a score of 7.3.
The affected software is Intel SGX SDK and Platform Software for Windows before version 2.2.100.
The CWE ID for this vulnerability is 732.
No, Microsoft Windows is not affected by this vulnerability.
An attacker can exploit this vulnerability by gaining local access and performing an escalation of privilege.
You can find more information about this vulnerability [here](https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00203.html).