SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2022-0005

Sensitive information accessible by physical probing of JTAG interface for some Intel(R) Processors with SGX may allow an unprivileged user to potentially enable information disclosure via physical access.

LOW 2.4EPSS 0.20%

Does this matter?

Lower severity and a low EPSS score (0.20%). Track it; it rarely justifies an emergency change on its own.

Description

Sensitive information accessible by physical probing of JTAG interface for some Intel(R) Processors with SGX may allow an unprivileged user to potentially enable information disclosure via physical access.

CVSS 3.1
2.4 LOWCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS
0.20% probability · 10th percentile
CISA KEV
Not listed
Weakness
CWE-319
Affected
intel/celeron g5205u firmware · intel/celeron g5305u firmware · intel/celeron g5900 firmware · intel/celeron g5900t firmware · intel/celeron g5905 firmware · intel/celeron g5905t firmware · intel/celeron g5920 firmware · intel/celeron g5925 firmware · intel/celeron n5095 firmware · intel/celeron n5100 firmware · intel/celeron n5105 firmware · intel/core i3-10100 firmware · intel/core i3-10100e firmware · intel/core i3-10100f firmware · intel/core i3-10100t firmware · intel/core i3-10100te firmware · intel/core i3-10100y firmware · intel/core i3-10105 firmware · intel/core i3-10105f firmware · intel/core i3-10105t firmware · +40 more
Source
secure@intel.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.