Skip to main content

Intel Processor Vulnerability: CVE-2023-23583 (Intel-SA-00950) - 2023.4 IPU Out-of-Band (OOB) - Intel® Processor Advisory - Reptar


dips
Forum|alt.badge.img+7
  • Veeam Legend
  • 808 comments

Intel have advised there is a new vulnerability affecting their processors. It looks like there are quite a few processors affected:

CVEID: CVE-2023-23583

Description: Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.

CVSS Base Score: 8.8 High

CVSS Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00950.html

 

I expect they will try and mitigate via a firmware or BIOS update. 

Additional info:

2 comments

Chris.Childerhose
Forum|alt.badge.img+21
  • Veeam Legend, Veeam Vanguard
  • 8512 comments
  • November 15, 2023

Wow! More intel vulnerabilities.  Thanks for sharing this Dips.  Need to inform my VMware team about this.


TylerJurgens
Forum|alt.badge.img+7
  • Influencer
  • 161 comments
  • November 15, 2023

Also co-incides with an AMD vulnerability. Interesting share, thank you!