Privilege Escalation Vulnerability in Intel SGX Crypto API Toolkit
CVE-2021-33097

6.6MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
17 November 2021

Summary

A time-of-check time-of-use vulnerability in the Crypto API Toolkit for Intel SGX may allow a privileged user to potentially escalate their privileges through network access. Exploitation of this vulnerability can lead to unauthorized access and manipulation of sensitive data, highlighting critical security concerns for users of the affected toolkit. Intel recommends users review their configurations and apply security updates as necessary.

Affected Version(s)

Intel(R) SGX See references

References

CVSS V3.1

Score:
6.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.