CVE-2022-43507

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
10/05/2023
Last modified:
07/11/2023

Description

Improper buffer restrictions in the Intel(R) QAT Engine for OpenSSL before version 0.6.16 may allow a privileged user to potentially enable escalation of privilege via network access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:intel:quickassist_technology_engine:*:*:*:*:*:*:*:* 0.6.16 (excluding)