CVE-2021-0001

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/06/2021
Last modified:
28/06/2021

Description

Observable timing discrepancy in Intel(R) IPP before version 2020 update 1 may allow authorized user to potentially enable information disclosure via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:-:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_1:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_2:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_3:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_4:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2020:-:*:*:*:*:*:*
cpe:2.3:a:intel:sgx_dcap:*:*:*:*:*:linux:*:* 1.10.100.4 (including)
cpe:2.3:a:intel:sgx_dcap:*:*:*:*:*:windows:*:* 1.10.100.4 (including)
cpe:2.3:a:intel:sgx_psw:*:*:*:*:*:windows:*:* 2.12.100.4 (including)
cpe:2.3:a:intel:sgx_psw:*:*:*:*:*:linux:*:* 2.13.100.4 (including)
cpe:2.3:a:intel:sgx_sdk:*:*:*:*:*:windows:*:* 2.12.100.4 (including)
cpe:2.3:a:intel:sgx_sdk:*:*:*:*:*:linux:*:* 2.13.100.4 (including)