Insufficient control flow management in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow information disclosure via network access.
History

Thu, 14 Nov 2024 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 13 Nov 2024 21:15:00 +0000

Type Values Removed Values Added
Description Insufficient control flow management in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow information disclosure via network access.
Weaknesses CWE-691
References
Metrics cvssV3_1

{'score': 5.9, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N'}

cvssV4_0

{'score': 8.2, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published: 2024-11-13T21:10:57.679Z

Updated: 2024-11-14T19:41:17.054Z

Reserved: 2024-05-23T17:14:54.783Z

Link: CVE-2024-33617

cve-icon Vulnrichment

Updated: 2024-11-14T15:09:57.858Z

cve-icon NVD

Status : Received

Published: 2024-11-13T21:15:19.243

Modified: 2024-11-13T21:15:19.243

Link: CVE-2024-33617

cve-icon Redhat

No data.