VDB

CVE-2022-26083

CVE-2022-26083 PUBLISHED CVSS 7.5 HIGH

Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021.5 may allow an unauthenticated user to potentially enable information disclosure via local access.

EPSS 0.13% · 31.5th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N
EPSS Score
0.13%
31.5th percentile

Affected Products

VendorProductVersions
intelintegrated_performance_primitives_cryptography0
n/aIntel(R) IPP Cryptography software librarybefore version 2021.5

Timeline

  • Feb 14, 2025 CVE Published
  • Feb 14, 2025 PoC Published
  • Feb 14, 2025 PoC Published
  • Feb 15, 2025 EPSS Score
  • Feb 18, 2025 CVE Updated
  • Mar 1, 2025 EPSS Score
  • Mar 16, 2025 EPSS Score
  • Mar 30, 2025 EPSS Score
  • Apr 14, 2025 EPSS Score
  • Apr 28, 2025 EPSS Score
  • May 13, 2025 EPSS Score
  • May 27, 2025 EPSS Score

References

…and 9 more

Open in Interactive Console →
$ Console Community · 100/wk Open console ›