CVE-2022-40982
MEDIUM6.5EPSS 0.73%intel-microcode - security update
發布日:2023/8/11修改日:2026/4/28
也稱為:ALPINE-CVE-2022-40982DEBIAN-CVE-2022-40982
描述
Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
受影響套件(9)
- Alpine/intel-ucodefrom 0, < 20230808-r0
- Alpine/xenfrom 0, < 4.15.5-r0
- Debian/intel-microcodefrom 0, < 3.20230808.1~deb10u1
- Debian/intel-microcodefrom 0, < 3.20230808.1~deb11u1
- Debian/intel-microcodefrom 0, < 3.20230808.1~deb11u1
- Debian/linuxfrom 0, < 4.19.289-2
- Debian/linuxfrom 0, < 5.10.179-5
- Debian/linuxfrom 0, < 5.10.179-5
- Debian/linux-5.10from 0, < 5.10.179-5~deb10u1
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 3.1 | MEDIUM6.5 | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N |