CVE-2022-26509: Medium severity intel sgx sdk for linux vulnerability
Published Feb 16, 2023
·Updated
Improper conditions check in the Intel(R) SGX SDK software may allow a privileged user to potentially enable information disclosure via local access.
Affected Software
4 affected components
Intel SGX SDK<2.16.100.1
Linux Linux kernel
Intel SGX SDK<2.15.100.1
Microsoft Windows
Event History
Feb 16, 2023
CVE Published
via MITRE·07:59 PM
Data Sourced
via MITRE·07:59 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-26509?
The severity of CVE-2022-26509 is medium with a severity value of 5.5.
2
What is the affected software for CVE-2022-26509?
The affected software for CVE-2022-26509 is Intel SGX SDK versions up to but excluding 2.16.100.1.
3
How can a privileged user potentially enable information disclosure via local access in CVE-2022-26509?
A privileged user can potentially enable information disclosure via local access due to an improper conditions check in the Intel SGX SDK software.
4
Is the Linux kernel vulnerable to CVE-2022-26509?
No, the Linux kernel is not vulnerable to CVE-2022-26509.
5
Is Microsoft Windows vulnerable to CVE-2022-26509?
No, Microsoft Windows is not vulnerable to CVE-2022-26509.
6
Where can I find more information about CVE-2022-26509?
You can find more information about CVE-2022-26509 in the Intel Security Center Advisory: Intel-SA-00677.