CVE-2023-43490

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Mar 14, 2024
CWE ID 682

Summary

CVE-2023-43490 is a vulnerability that affects some Intel Xeon D Processors with Intel SGX. It is caused by an incorrect calculation in the microcode keying mechanism, which could potentially enable information disclosure by a privileged user with local access. The vulnerability has a base severity rating of MEDIUM and a base score of 5.3 according to secure@intel.com. The exploitability score is 0.8, indicating that it can be exploited relatively easily. The potential danger lies in the possibility of unauthorized access to sensitive information, posing confidentiality risks to organizations. It is recommended to remediate this vulnerability by applying patches or updates provided by Intel.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2023-43490 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options