CVE-2021-0001: Medium severity intel integrated performance primitives vulnerability
Observable timing discrepancy in Intel(R) IPP before version 2020 update 1 may allow authorized user to potentially enable information disclosure via local access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-0001?
CVE-2021-0001 is a vulnerability in Intel(R) IPP before version 2020 update 1 that may allow an authorized user to potentially enable information disclosure via local access.
Is my version of Intel Integrated Performance Primitives Cryptography affected?
Yes, if you are using Intel Integrated Performance Primitives Cryptography version 2019 through 2019-update_4.
Is my version of Intel Sgx Dcap affected?
Yes, if you are using Intel Sgx Dcap version up to and including 1.10.100.4.
Is my version of Intel Sgx Psw affected?
Yes, if you are using Intel Sgx Psw version up to and including 2.12.100.4.
Is my version of Intel Sgx Sdk affected?
Yes, if you are using Intel Sgx Sdk version up to and including 2.12.100.4.
What is the severity of CVE-2021-0001?
CVE-2021-0001 has a severity rating of 4.7 (medium).
Where can I find more information about CVE-2021-0001?
You can find more information about CVE-2021-0001 at the following link: [Intel Security Advisory](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00477.html).