ZeroHour

CVE-2022-40982

PoC ×2
CVSS 3.1
6.5 medium
EPSS
3%p87
Published
()
Modified
Description

Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

Vendors
redhatxeninteldebiannetapp
Products
enterprise linux, xen, microcode, xeon e-2314 firmware, xeon e-2324g firmware, xeon e-2334 firmware, xeon e-2374g firmware, xeon e-2336 firmware, xeon e-2356g firmware, xeon e-2386g firmware, xeon e-2378 firmware, xeon e-2378g firmware
Weakness
CWE-1342, CWE-203
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

In the news