First published: Wed May 10 2023(Updated: )
Incomplete cleanup in the Intel(R) IPP Cryptography software before version 2021.6 may allow a privileged user to potentially enable information disclosure via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Integrated Performance Primitives | <2021.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-40974 is a vulnerability in the Intel(R) IPP Cryptography software that may allow a privileged user to potentially enable information disclosure via local access.
The severity of CVE-2022-40974 is classified as medium.
CVE-2022-40974 affects the Intel Integrated Performance Primitives Cryptography software versions prior to 2021.6.
A privileged user can potentially enable information disclosure through local access using CVE-2022-40974.
Yes, upgrading to Intel Integrated Performance Primitives Cryptography software version 2021.6 or later can fix CVE-2022-40974.