CVE-2022-21156: Medium severity intel trace analyzer and collector vulnerability
Access of uninitialized pointer in the Intel(R) Trace Analyzer and Collector before version 2021.5 may allow an authenticated user to potentially enable denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-21156?
CVE-2022-21156 refers to the vulnerability in the Intel(R) Trace Analyzer and Collector software before version 2021.5 that allows an authenticated user to potentially enable denial of service through local access.
What is the severity of CVE-2022-21156?
The severity of CVE-2022-21156 is medium with a CVSS severity score of 5.5.
How can an attacker exploit CVE-2022-21156?
An attacker can exploit CVE-2022-21156 by gaining authenticated access to the vulnerable Intel(R) Trace Analyzer and Collector software and potentially causing a denial of service.
Is there a fix for CVE-2022-21156?
Yes, the fix for CVE-2022-21156 is to upgrade the Intel(R) Trace Analyzer and Collector software to version 2021.5 or later.
Where can I find more information about CVE-2022-21156?
You can find more information about CVE-2022-21156 in the Intel Security Advisory SA-00639 at the following link: [Intel-SA-00639](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00639.html)