Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2619▼ 461 respecto a la semana anterior
Críticas / altas1277▼ 72 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)235▼ 274 respecto a la semana anterior
15 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (1.8) | 0.14% | — | Intel Edger8r ToolAIIntel SGX SDKAI | 12/8/2025 | 17/6/2026 | Improper input validation in the Intel Edger8r Tool for some Intel(R) SGX SDK may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Baja (2) | 0.15% | — | Intel SGX SDKAI | 13/11/2024 | 17/6/2026 | Out-of-bounds write in some Intel(R) SGX SDK software may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (5.5) | 0.16% | — | Intel SGX SDK | 16/2/2023 | 17/6/2026 | Insufficient control flow management for the Intel(R) SGX SDK software for Linux before version 2.16.100.1 may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 0.16% | — | Intel SGX SDK | 16/2/2023 | 17/6/2026 | Improper conditions check in the Intel(R) SGX SDK software may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Media (4.4) | 0.42% | — | Intel SGX SDK | 11/11/2022 | 17/6/2026 | Premature release of resource during expected lifetime in the Intel(R) SGX SDK software may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 5.8% | — | XENFedoraproject FedoraIntel SGX DcapIntel SGX PSW+3 | 15/6/2022 | 17/6/2026 | Incomplete cleanup in specific special register write operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 5.5% | — | XENIntel SGX DcapIntel SGX PSWIntel SGX SDK+1 | 15/6/2022 | 17/6/2026 | Incomplete cleanup in specific special register read operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 6.5% | — | XENFedoraproject FedoraIntel SGX DcapIntel SGX PSW+3 | 15/6/2022 | 17/6/2026 | Incomplete cleanup of microarchitectural fill buffers on some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 6.2% | — | XENFedoraproject FedoraIntel SGX DcapIntel SGX PSW+3 | 15/6/2022 | 17/6/2026 | Incomplete cleanup of multi-core shared buffers for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (6.7) | 0.33% | — | Intel SGX SDKIntel Xeon Gold 6342 FirmwareIntel Xeon Gold 6346 FirmwareIntel Xeon Gold 6330 Firmware+179 | 17/11/2021 | 17/6/2026 | Improper input validation in the Intel(R) SGX SDK applications compiled for SGX2 enabled processors may allow a privileged user to potentially escalation of privilege via local access. | |
| Modificada | Media (4.9) | 2.2% | — | Apache Teaclave SGX SDK | 14/7/2021 | 17/6/2026 | In Apache Teaclave Rust SGX SDK 1.1.3, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) attackers to obtain information about secret RSA keys via a controlled-channel and side-channel attack on software running in isolated environments that can be single stepped, especially… | |
| Modificada | Media (4.7) | 0.21% | — | Intel Integrated Performance Primitives CryptographyIntel SGX DcapIntel SGX PSWIntel SGX SDK | 9/6/2021 | 17/6/2026 | Observable timing discrepancy in Intel(R) IPP before version 2020 update 1 may allow authorized user to potentially enable information disclosure via local access. | |
| Modificada | Crítica (9.8) | 3.2% | — | Apache Rust SGX SDK | 4/1/2020 | 17/6/2026 | Baidu Rust SGX SDK through 1.0.8 has an enclave ID race. There are non-deterministic results in which, sometimes, two global IDs are the same. | |
| Modificada | Alta (7.3) | 0.28% | — | Intel SGX Platform SoftwareIntel SGX SDK | 10/1/2019 | 17/6/2026 | Improper file verification in install routine for Intel(R) SGX SDK and Platform Software for Windows before 2.2.100 may allow an escalation of privilege via local access. | |
| Modificada | Media (4.7) | 0.28% | — | Intel SGX SDK | 20/3/2018 | 17/6/2026 | Edger8r tool in the Intel SGX SDK before version 2.1.2 (Linux) and 1.9.6 (Windows) may generate code that is susceptible to a side channel potentially allowing a local user to access unauthorized information. |