CVE-2018-12155

MEDIUM

Intel Integrated Performance Primitives < 2019 - Authenticated Information Disclosure via Cryptographic Library

Title source: llm
STIX 2.1

Description

Data leakage in cryptographic libraries for Intel IPP before 2019 update1 release may allow an authenticated user to potentially enable information disclosure via local access.

References (2)

Core 2
Core References
Various Sources x_refsource_confirm
http://support.lenovo.com/us/en/solutions/LEN-25662

Scores

CVSS v3 5.5
EPSS 0.0006
EPSS Percentile 18.7%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-200
Status published
Products (2)
intel/integrated_performance_primitives 2019
intel/integrated_performance_primitives < 2019
Published Dec 05, 2018
Tracked Since Feb 18, 2026