

Rewterz Threat Advisory – CVE-2022-21163 – Intel Crypto API Toolkit for Intel SGX Vulnerability
February 15, 2023
Rewterz Threat Advisory – Multiple Intel oneAPI Toolkits Vulnerabilities
February 15, 2023
Rewterz Threat Advisory – CVE-2022-21163 – Intel Crypto API Toolkit for Intel SGX Vulnerability
February 15, 2023
Rewterz Threat Advisory – Multiple Intel oneAPI Toolkits Vulnerabilities
February 15, 2023Severity
High
Analysis Summary
CVE-2022-33190 CVSS:7.1
Intel System Usage Report (SUR) software could allow a local authenticated attacker to gain elevated privileges on the system, caused by improper input validation. By sending a specially-crafted request, an attacker could exploit this vulnerability to escalate privileges.
CVE-2022-33964 CVSS:7.4
Intel System Usage Report (SUR) software could allow a remote attacker to gain elevated privileges on the system, caused by improper input validation. By sending a specially-crafted request, an attacker could exploit this vulnerability to escalate privileges.
CVE-2022-29514 CVSS:7.7
Intel System Usage Report (SUR) software could allow a remote attacker to gain elevated privileges on the system, caused by improper access control. By sending a specially-crafted request, an attacker could exploit this vulnerability to escalate privileges.
Impact
- Privilege Escalation
Indicators Of Compromise
CVE
- CVE-2022-33190
- CVE-2022-33964
- CVE-2022-29514
Affected Vendors
Intel
Affected Products
- Intel System Usage Report (SUR)
Remediation
Refer to Intel Security Advisory for patch, upgrade or suggested workaround information.