CVE-2022-26841: Medium severity intel sgx sdk for linux vulnerability
Published Feb 16, 2023
·Updated
Insufficient control flow management for the Intel(R) SGX SDK software for Linux before version 2.16.100.1 may allow an authenticated user to potentially enable information disclosure via local access.
Affected Software
4 affected components
Intel SGX SDK<2.16.100.1
Linux Linux kernel
Intel SGX SDK<2.15.100.1
Microsoft Windows
Event History
Feb 16, 2023
CVE Published
via MITRE·07:59 PM
Data Sourced
via MITRE·07:59 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-26841.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Insufficient control flow management for the Intel(R) SGX SDK software for Linux before version 2.16'.
3
What is the severity of CVE-2022-26841?
The severity of CVE-2022-26841 is medium with a severity value of 5.5.
4
What is the affected software for CVE-2022-26841?
The affected software for CVE-2022-26841 is the Intel SGX SDK software for Linux before version 2.16.100.1.
5
How can an authenticated user potentially exploit CVE-2022-26841?
An authenticated user may potentially enable information disclosure via local access.