CVE-2021-0001

Observable timing discrepancy in Intel(R) IPP before version 2020 update 1 may allow authorized user to potentially enable information disclosure via local access.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:-:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_1:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_2:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_3:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_4:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2020:-:*:*:*:*:*:*
cpe:2.3:a:intel:sgx_dcap:*:*:*:*:*:linux:*:*
cpe:2.3:a:intel:sgx_dcap:*:*:*:*:*:windows:*:*
cpe:2.3:a:intel:sgx_psw:*:*:*:*:*:windows:*:*
cpe:2.3:a:intel:sgx_psw:*:*:*:*:*:linux:*:*
cpe:2.3:a:intel:sgx_sdk:*:*:*:*:*:windows:*:*
cpe:2.3:a:intel:sgx_sdk:*:*:*:*:*:linux:*:*

History

28 Jun 2021, 18:03

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 2.1
v3 : 4.7
CPE cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_1:*:*:*:*:*:*
cpe:2.3:a:intel:sgx_dcap:*:*:*:*:*:windows:*:*
cpe:2.3:a:intel:sgx_psw:*:*:*:*:*:windows:*:*
cpe:2.3:a:intel:sgx_sdk:*:*:*:*:*:windows:*:*
cpe:2.3:a:intel:sgx_psw:*:*:*:*:*:linux:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_2:*:*:*:*:*:*
cpe:2.3:a:intel:sgx_sdk:*:*:*:*:*:linux:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_3:*:*:*:*:*:*
cpe:2.3:a:intel:sgx_dcap:*:*:*:*:*:linux:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:-:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2020:-:*:*:*:*:*:*
cpe:2.3:a:intel:integrated_performance_primitives_cryptography:2019:update_4:*:*:*:*:*:*
References (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00477.html - (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00477.html - Patch, Vendor Advisory
CWE CWE-203

09 Jun 2021, 20:19

Type Values Removed Values Added
New CVE

Information

Published : 2021-06-09 20:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-0001

Mitre link : CVE-2021-0001

CVE.ORG link : CVE-2021-0001


JSON object : View

Products Affected

intel

  • integrated_performance_primitives_cryptography
  • sgx_psw
  • sgx_sdk
  • sgx_dcap
CWE
CWE-203

Observable Discrepancy