Improper file verification in install routine for Intel(R) SGX SDK and Platform Software for Windows before 2.2.100 may allow an escalation of privilege via local access.
References
Link | Resource |
---|---|
https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00203.html | Patch Vendor Advisory |
Information
Published : 2019-01-10 12:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-18098
Mitre link : CVE-2018-18098
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
intel
- sgx_sdk
- sgx_platform_software
microsoft
- windows