CVE-2022-41804

Updated: 2026-02-27 01:45:25.039491

Description:

Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x MEDIUM 6.7

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU microcode_ctl 20220809 6.7 MEDIUM Ignored 2023-12-01 03:18:45 This vulnerability is exploitable only by a local, already‑privileged user and targets SGX/TDX err...
CentOS 6 ELS microcode_ctl 1.17-33.29 6.7 MEDIUM Ignored 2023-12-01 03:18:45 Ignored due to low severity
CentOS 7 ELS microcode_ctl 2.1 6.7 MEDIUM Released CLSA-2023:1701444720 2023-12-01 13:09:24
CentOS 8.4 ELS microcode_ctl 20210216-1 6.7 MEDIUM Ignored 2025-09-23 11:56:10 Ignored due to low severity
CentOS 8.5 ELS microcode_ctl 20210608-1 6.7 MEDIUM Ignored 2025-09-23 11:56:11 Ignored due to low severity
CloudLinux 6 ELS microcode_ctl 1.17-33.29 6.7 MEDIUM Ignored 2023-12-01 03:18:45 Ignored due to low severity
Oracle Linux 6 ELS microcode_ctl 1.17-33.29 6.7 MEDIUM Ignored 2023-12-01 03:18:45 Ignored due to low severity
Ubuntu 16.04 ELS intel-microcode 3.20201110.0 6.7 MEDIUM Released CLSA-2023:1693419056 2023-08-30 17:06:02
Ubuntu 18.04 ELS intel-microcode 3.20220809.0 6.7 MEDIUM Released CLSA-2023:1693419791 2023-08-30 17:06:03