Vulnerability Description
Null pointer dereference for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authenticated user to potentially enable information disclosure via local access.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Oneapi Hpc Toolkit | < 2023.0.0 |
| Intel | Trace Analyzer And Collector | < 2021.8.0 |
Related Weaknesses (CWE)
References
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00805.Vendor Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00805.Vendor Advisory
FAQ
What is CVE-2022-42878?
CVE-2022-42878 is a vulnerability with a CVSS score of 2.8 (LOW). Null pointer dereference for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authenticated user to potentially enable information disclosure...
How severe is CVE-2022-42878?
CVE-2022-42878 has been rated LOW with a CVSS base score of 2.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-42878?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Oneapi Hpc Toolkit, Intel Trace Analyzer And Collector.