U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2022-21166

Change History

Initial Analysis by NIST 6/27/2022 2:07:31 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:intel:sgx_dcap:*:*:*:*:*:linux:*:* versions up to (excluding) 1.14.100.3
     *cpe:2.3:a:intel:sgx_dcap:*:*:*:*:*:windows:*:* versions up to (excluding) 1.14.100.3
     *cpe:2.3:a:intel:sgx_psw:*:*:*:*:*:windows:*:* versions up to (excluding) 2.16.100.3
     *cpe:2.3:a:intel:sgx_psw:*:*:*:*:*:linux:*:* versions up to (excluding) 2.17.100.3
     *cpe:2.3:a:intel:sgx_sdk:*:*:*:*:*:windows:*:* versions up to (excluding) 2.16.100.3
     *cpe:2.3:a:intel:sgx_sdk:*:*:*:*:*:linux:*:* versions up to (excluding) 2.17.100.3
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
     *cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:xen:xen:*:*:*:*:*:*:x86:*
Added CVSS V2

								
							
							
						
NIST (AV:L/AC:L/Au:N/C:P/I:N/A:N)
Added CVSS V3.1

								
							
							
						
NIST AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Added CWE

								
							
							
						
NIST CWE-459
Changed Reference Type
http://www.openwall.com/lists/oss-security/2022/06/16/1 No Types Assigned
http://www.openwall.com/lists/oss-security/2022/06/16/1 Mailing List, Patch, Third Party Advisory
Changed Reference Type
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FHTEW3RXU2GW6S3RCPQG4VNCZGI3TOSV/ No Types Assigned
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FHTEW3RXU2GW6S3RCPQG4VNCZGI3TOSV/ Mailing List, Third Party Advisory
Changed Reference Type
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/T4P2KJYL74KGLHE4JZETVW7PZH6ZIABA/ No Types Assigned
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/T4P2KJYL74KGLHE4JZETVW7PZH6ZIABA/ Mailing List, Third Party Advisory
Changed Reference Type
https://security.netapp.com/advisory/ntap-20220624-0008/ No Types Assigned
https://security.netapp.com/advisory/ntap-20220624-0008/ Third Party Advisory
Changed Reference Type
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00615.html No Types Assigned
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00615.html Patch, Vendor Advisory