CVE-2018-12155
MEDIUMIntel Integrated Performance Primitives < 2019 - Authenticated Information Disclosure via Cryptographic Library
Title source: llmDescription
Data leakage in cryptographic libraries for Intel IPP before 2019 update1 release may allow an authenticated user to potentially enable information disclosure via local access.
References (2)
Core 2
Core References
Vendor Advisory x_refsource_confirm
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00202.html
Various Sources x_refsource_confirm
http://support.lenovo.com/us/en/solutions/LEN-25662
Scores
CVSS v3
5.5
EPSS
0.0006
EPSS Percentile
18.7%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-200
Status
published
Products (2)
intel/integrated_performance_primitives
2019
intel/integrated_performance_primitives
< 2019
Published
Dec 05, 2018
Tracked Since
Feb 18, 2026