VDB
CISA-2024-21850
CISA-2024-21850
PUBLISHED
CVSS 8.3 HIGH
Reported by intel · Published November 13, 2024
Sensitive information in resource not removed before reuse in some Intel(R) TDX Seamldr module software before version 1.5.02.00 may allow a privileged user to potentially enable escalation of privilege via local access.
Risk Scores
CVSS 4.0
8.3
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | Intel(R) TDX Seamldr module software | before version 1.5.02.00 |
| intel | tdx_module_software | 0, 0 |
| n/a | Intel(R) TDX Seamldr module software | before version 1.5.02.00, before version 1.5.02.00 |
Timeline
- Nov 13, 2024 CVE Published
- Nov 14, 2024 CVE Updated