Lucene search

K
nvd[email protected]NVD:CVE-2023-28746
HistoryMar 14, 2024 - 5:15 p.m.

CVE-2023-28746

2024-03-1417:15:50
CWE-1342
web.nvd.nist.gov
11
information exposure
intel atom processors
transient execution

CVSS3

6.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

AI Score

6.7

Confidence

High

EPSS

0

Percentile

10.3%

Information exposure through microarchitectural state after transient execution from some register files for some Intelยฎ Atomยฎ Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3

6.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

AI Score

6.7

Confidence

High

EPSS

0

Percentile

10.3%