Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021.5 may allow an unauthenticated user to potentially enable information disclosure via local access.
History

Tue, 18 Feb 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 14 Feb 2025 21:00:00 +0000

Type Values Removed Values Added
Description Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021.5 may allow an unauthenticated user to potentially enable information disclosure via local access.
Weaknesses CWE-1204
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2025-02-18T16:29:02.579Z

Reserved: 2022-03-02T00:32:53.297Z

Link: CVE-2022-26083

cve-icon Vulnrichment

Updated: 2025-02-18T16:28:46.429Z

cve-icon NVD

Status : Received

Published: 2025-02-14T21:15:11.947

Modified: 2025-02-14T21:15:11.947

Link: CVE-2022-26083

cve-icon Redhat

No data.