CVE-2023-22655: Medium severity ubuntu/intel-microcode vulnerability
Protection mechanism failure in some 3rd and 4th Generation Intel(R) Xeon(R) Processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-22655?
CVE-2023-22655 has a high severity level due to its potential to allow escalation of privilege for privileged users.
How do I fix CVE-2023-22655?
To mitigate CVE-2023-22655, update to the latest versions of the intel-microcode package available for your specific Ubuntu or Debian release.
What platforms are affected by CVE-2023-22655?
CVE-2023-22655 affects 3rd and 4th Generation Intel Xeon Processors utilizing Intel SGX or Intel TDX technologies.
Can local access escalate privileges due to CVE-2023-22655?
Yes, CVE-2023-22655 allows a privileged user with local access to potentially escalate their privileges.
Which versions of intel-microcode are safe from CVE-2023-22655?
Versions of intel-microcode that are updated to at least 3.20240514.*, based on your OS version, are considered safe from CVE-2023-22655.