Home/Product/intel sgx sdk
Product

intel sgx sdk

11 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2022-26841
< 2.16.100.1
Insufficient control flow management for the Intel(R) SGX SDK software for Linux before version 2.16.100.1 may allow an authentica
2.5LOW
CVE-2022-26509
< 2.16.100.1
Improper conditions check in the Intel(R) SGX SDK software may allow a privileged user to potentially enable information disclosur
2.5LOW
CVE-2022-27499
< 2.18.100.1
Premature release of resource during expected lifetime in the Intel(R) SGX SDK software may allow a privileged user to potentially
2.5LOW
CVE-2022-21166
< 2.17.100.3
Incomplete cleanup in specific special register write operations for some Intel(R) Processors may allow an authenticated user to p
5.5MEDIUM
CVE-2022-21127
< 2.17.100.3
Incomplete cleanup in specific special register read operations for some Intel(R) Processors may allow an authenticated user to po
5.5MEDIUM
CVE-2022-21125
< 2.17.100.3
Incomplete cleanup of microarchitectural fill buffers on some Intel(R) Processors may allow an authenticated user to potentially e
5.5MEDIUM
CVE-2022-21123
< 2.17.100.3
Incomplete cleanup of multi-core shared buffers for some Intel(R) Processors may allow an authenticated user to potentially enable
5.5MEDIUM
CVE-2021-0186
<= 2.12
Improper input validation in the Intel(R) SGX SDK applications compiled for SGX2 enabled processors may allow a privileged user to
6.7MEDIUM
CVE-2021-0001
<= 2.13.100.4
Observable timing discrepancy in Intel(R) IPP before version 2020 update 1 may allow authorized user to potentially enable informa
4.7MEDIUM
CVE-2018-18098
< 2.2.100
Improper file verification in install routine for Intel(R) SGX SDK and Platform Software for Windows before 2.2.100 may allow an e
7.3HIGH
CVE-2018-3626
< 1.9.6
Edger8r tool in the Intel SGX SDK before version 2.1.2 (Linux) and 1.9.6 (Windows) may generate code that is susceptible to a side
4.7MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin