ZeroHour

Vulnerabilities

4 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2024-29971
Scontain SCONE 5.8.0 has an interface vulnerability that leads to state corruption via injected signals.

Scontain SCONE 5.8.0 has an interface vulnerability that leads to state corruption via injected signals.

NVD description · AI analysis pending
9.8<1%
  • scontain scone
CVE-2022-46487
+2 in the same advisory: …46486 …38023
Improper initialization of x87 and SSE floating-point configuration registers in the __scone_entry component of SCONE before 5.8.0 for Intel SGX allows a local

Improper initialization of x87 and SSE floating-point configuration registers in the __scone_entry component of SCONE before 5.8.0 for Intel SGX allows a local attacker to compromise the execution integrity of floating-point operations in an enclave or access sensitive information via side-channel analysis.

NVD description · AI analysis pending
7.8
group max
<1% PoC ×2
  • scontain scone