VDB
BDU%3A2023-07325
BDU%3A2023-07325
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость микропрограммного обеспечения процессоров Intel, позволяющая нарушителю повысить свои привилегии (с третьего до нулевого кольца защиты (CPL0)), получить доступ к конфиденциальной информации или вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Novell Inc., Intel Corp., Canonical Ltd., ООО «Ред Софт», ООО «РусБИТех-Астра», АО «НТЦ ИТ РОСА», Google Inc, АО "НППКТ" | OpenSUSE Leap, Intel Pentium Gold Series, Intel Xeon D, SUSE Linux Enterprise Server for SAP Applications, Suse Linux Enterprise Server, Ubuntu, Intel Celeron Processor Family, SUSE CaaS Platform, Intel Xeon W Processor Family, SUSE Linux Enterprise High Performance Computing, 10th Generation Intel Core Processor Family, 3rd Gen Intel Xeon Scalable processor family, РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), SUSE Manager Proxy, SUSE Manager Server, SUSE Linux Enterprise Micro, 12th Generation Intel Core Processor Family, Intel Xeon E-2300 Processor Family, Intel Xeon W-1300 processor family, Suse Linux Enterprise Desktop, SUSE Manager Retail Branch Server, 11th Generation Intel Core Processor Family, SUSE Enterprise Storage, SUSE Linux Enterprise Module for Basesystem, openSUSE Leap Micro, РОСА Кобальт (запись в едином реестре российских программ №1999), Chrome OS, 13th Generation Intel Core Processor Family, Intel Processor U-series, 4th Generation Intel Xeon Scalable processors, 4th Generation Intel Xeon Platinum processors, 4th Generation Intel Xeon Gold Processors, 4th Generation Intel Xeon Silver Processor, 4th Generation Intel Xeon Bronze Processor, 4th Gen Intel Xeon Scalable Processors with Intel vRAN, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913), ROSA Virtualization 3.0 (запись в едином реестре российских программ №21308) |
Timeline
- Oct 31, 2023 CVE Published
- Aug 19, 2025 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Security Advisory
References
- https://www.cybersecurity-help.cz/vdb/SB2023102457 url
- https://chromereleases.googleblog.com/2023/10/long-term-support-channel-update-for_24.html url
- https://vuldb.com/?id.245292 url
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00950.html url
- https://lock.cmpxchg8b.com/reptar.html url
- https://github.com/google/security-research/tree/master/pocs/cpus/reptar url
- http://www.openwall.com/lists/oss-security/2023/11/14/4 url
- http://www.openwall.com/lists/oss-security/2023/11/14/5 url
- http://www.openwall.com/lists/oss-security/2023/11/14/6 url
- http://www.openwall.com/lists/oss-security/2023/11/14/7 url
- http://www.openwall.com/lists/oss-security/2023/11/14/8 url
- http://www.openwall.com/lists/oss-security/2023/11/14/9 url
- https://access.redhat.com/security/cve/cve-2023-23583 url
- https://ubuntu.com/security/CVE-2023-23583 url
- https://поддержка.нппкт.рф/bin/view/ОСнова/Обновления/2.10/ url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2024-0830SE17 url
- https://abf.rosa.ru/advisories/ROSA-SA-2025-2872 url
- https://ubuntu.com/security/notices/USN-6485-1 advisory
- https://www.suse.com/security/cve/CVE-2023-23583.html advisory
…and 1 more