CVE-2022-26083

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Feb 14, 2025
CWE ID 1204

Summary

CVE-2022-26083 is a vulnerability affecting Intel(R) IPP Cryptography software library versions prior to 2021.5. This issue results in the generation of weak initialization vectors, making the system susceptible to information disclosure attacks. An unauthenticated user can potentially exploit this vulnerability through local access, gaining access to sensitive data. The vulnerability poses a risk to systems utilizing the affected software library and requires immediate patching to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share