Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.104293
Category:General
Title:Intel CPU Information Disclosure Vulnerability (INTEL-SA-00657, AEPIC)
Summary:The Intel CPU on the remote host might be prone to an; information disclosure vulnerability dubbed 'AEPIC'.
Description:Summary:
The Intel CPU on the remote host might be prone to an
information disclosure vulnerability dubbed 'AEPIC'.

Vulnerability Insight:
Improper isolation of shared resources in some Intel(R)
Processors may allow a privileged user to potentially enable information disclosure via local
access.

Solution:
Intel recommends that users of affected Intel(R) Processors
update to the latest version firmware provided by the system manufacturer that addresses these
issues. In addition, Intel will be releasing Intel(R) SGX SDK updates soon after public embargo is
lifted.

Intel has released microcode updates for the affected Intel(R) Processors that are currently
supported on the public github repository. Please see details below on access to the microcode:

GitHub*: Public Github: [link moved to references]

CVSS Score:
4.6

CVSS Vector:
AV:L/AC:L/Au:S/C:C/I:N/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2022-21233
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00657.html
https://lists.debian.org/debian-lts-announce/2023/04/msg00000.html
CopyrightCopyright (C) 2022 Greenbone Networks GmbH

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.