7.8
CVSSv3

CVE-2023-23583

Published: 14/11/2023 Updated: 16/12/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel core i3-10100y firmware -

intel core i3-10110u firmware -

intel core i3-10110y firmware -

intel core i3-1005g1 firmware -

intel core i5-10500h firmware -

intel core i5-10200h firmware -

intel core i5-10310u firmware -

intel core i5-10300h firmware -

intel core i5-10400h firmware -

intel core i5-10210u firmware -

intel core i5-10210y firmware -

intel core i5-10310y firmware -

intel core i5-1035g1 firmware -

intel core i5-1035g4 firmware -

intel core i5-1035g7 firmware -

intel core i7-10870h firmware -

intel core i7-10610u firmware -

intel core i7-10810u firmware -

intel core i7-10750h firmware -

intel core i7-10850h firmware -

intel core i7-10875h firmware -

intel core i7-10510u firmware -

intel core i7-10510y firmware -

intel core i7-10710u firmware -

intel core i7-1065g7 firmware -

intel core i9-10885h firmware -

intel core i9-10980hk firmware -

intel core i3-11100he firmware -

intel core i3-1115g4e firmware -

intel core i3-1115gre firmware -

intel core i5-11500he firmware -

intel core i5-1145g7e firmware -

intel core i5-1145gre firmware -

intel core i5-11400 firmware -

intel core i5-11400f firmware -

intel core i5-11400t firmware -

intel core i5-11500 firmware -

intel core i5-11500t firmware -

intel core i5-11600 firmware -

intel core i5-11600k firmware -

intel core i5-11600kf firmware -

intel core i5-11600t firmware -

intel core i7-11850he firmware -

intel core i7-1185g7e firmware -

intel core i7-1185gre firmware -

intel core i7-11700 firmware -

intel core i7-11700f firmware -

intel core i7-11700k firmware -

intel core i7-11700kf firmware -

intel core i7-11700t firmware -

intel core i9-11900 firmware -

intel core i9-11900f firmware -

intel core i9-11900k firmware -

intel core i9-11900kf firmware -

intel core i9-11900t firmware -

intel core i9-11900h firmware -

intel core i9-11950h firmware -

intel core i9-11980hk firmware -

intel core i7-11600h firmware -

intel core i7-11390h firmware -

intel core i7-1195g7 firmware -

intel core i7-11800h firmware -

intel core i7-11850h firmware -

intel core i7-11370h firmware -

intel core i7-11375h firmware -

intel core i7-1180g7 firmware -

intel core i7-1160g7 firmware -

intel core i7-1165g7 firmware -

intel core i7-1185g7 firmware -

intel core i5-11320h -

intel core i5-1155g7 -

intel core i5-11260h firmware -

intel core i5-11400h firmware -

intel core i5-11500h firmware -

intel core i5-11300h firmware -

intel core i5-1140g7 firmware -

intel core i5-1145g7 firmware -

intel core i5-1135g7 firmware -

intel core i5-1130g7 firmware -

intel core i3-1120g4 firmware -

intel core i3-1125g4 firmware -

intel core i3-1110g4 firmware -

intel core i3-1115g4 firmware -

intel xeon d-2745nx firmware -

intel xeon d-2757nx firmware -

intel xeon d-2777nx firmware -

intel xeon d-2798nx firmware -

intel xeon d-1702 firmware -

intel xeon d-1712tr firmware -

intel xeon d-1713nt firmware -

intel xeon d-1713nte firmware -

intel xeon d-1714 firmware -

intel xeon d-1715ter firmware -

intel xeon d-1718t firmware -

intel xeon d-1722ne firmware -

intel xeon d-1726 firmware -

intel xeon d-1732te firmware -

intel xeon d-1733nt firmware -

intel xeon d-1734nt firmware -

intel xeon d-1735tr firmware -

intel xeon d-1736 firmware -

intel xeon d-1736nt firmware -

intel xeon d-1739 firmware -

intel xeon d-1746ter firmware -

intel xeon d-1747nte firmware -

intel xeon d-1748te firmware -

intel xeon d-1749nt firmware -

intel xeon d-2712t firmware -

intel xeon d-2733nt firmware -

intel xeon d-2738 firmware -

intel xeon d-2752nte firmware -

intel xeon d-2752ter firmware -

intel xeon d-2753nt firmware -

intel xeon d-2766nt firmware -

intel xeon d-2775te firmware -

intel xeon d-2776nt firmware -

intel xeon d-2779 firmware -

intel xeon d-2786nte firmware -

intel xeon d-2795nt firmware -

intel xeon d-2796nt firmware -

intel xeon d-2796te firmware -

intel xeon d-2798nt firmware -

intel xeon d-2799 firmware -

intel xeon d-1731nte firmware -

intel xeon d-1602 firmware -

intel xeon d-1622 firmware -

intel xeon d-1623n firmware -

intel xeon d-1627 firmware -

intel xeon d-1633n firmware -

intel xeon d-1637 firmware -

intel xeon d-1649n firmware -

intel xeon d-1653n firmware -

intel xeon d-2123it firmware -

intel xeon d-2141i firmware -

intel xeon d-2142it firmware -

intel xeon d-2143it firmware -

intel xeon d-2145nt firmware -

intel xeon d-2146nt firmware -

intel xeon d-2161i firmware -

intel xeon d-2163it firmware -

intel xeon d-2166nt firmware -

intel xeon d-2173it firmware -

intel xeon d-2177nt firmware -

intel xeon d-2183it firmware -

intel xeon d-2187nt firmware -

intel xeon d-1513n firmware -

intel xeon d-1523n firmware -

intel xeon d-1533n firmware -

intel xeon d-1543n firmware -

intel xeon d-1553n firmware -

intel xeon d-1529 firmware -

intel xeon d-1539 firmware -

intel xeon d-1559 firmware -

intel xeon d-1557 firmware -

intel xeon d-1567 firmware -

intel xeon d-1571 firmware -

intel xeon d-1577 firmware -

intel xeon d-1518 firmware -

intel xeon d-1521 firmware -

intel xeon d-1527 firmware -

intel xeon d-1528 firmware -

intel xeon d-1531 firmware -

intel xeon d-1537 firmware -

intel xeon d-1541 firmware -

intel xeon d-1548 firmware -

intel xeon d-1520 firmware -

intel xeon d-1540 firmware -

intel xeon gold 5315y firmware -

intel xeon gold 5317 firmware -

intel xeon gold 5318n firmware -

intel xeon gold 5318s firmware -

intel xeon gold 5318y firmware -

intel xeon gold 5320 firmware -

intel xeon gold 5320t firmware -

intel xeon gold 6312u firmware -

intel xeon gold 6314u firmware -

intel xeon gold 6326 firmware -

intel xeon gold 6330 firmware -

intel xeon gold 6330n firmware -

intel xeon gold 6334 firmware -

intel xeon gold 6336y firmware -

intel xeon gold 6338 firmware -

intel xeon gold 6338n firmware -

intel xeon gold 6338t firmware -

intel xeon gold 6342 firmware -

intel xeon gold 6346 firmware -

intel xeon gold 6348 firmware -

intel xeon gold 6354 firmware -

intel xeon platinum 8351n firmware -

intel xeon platinum 8352m firmware -

intel xeon platinum 8352s firmware -

intel xeon platinum 8352v firmware -

intel xeon platinum 8352y firmware -

intel xeon platinum 8358 firmware -

intel xeon platinum 8358p firmware -

intel xeon platinum 8360y firmware -

intel xeon platinum 8362 firmware -

intel xeon platinum 8368 firmware -

intel xeon platinum 8380 firmware -

intel xeon silver 4309y firmware -

intel xeon silver 4310 firmware -

intel xeon silver 4310t firmware -

intel xeon silver 4314 firmware -

intel xeon silver 4316 firmware -

intel xeon gold 6330h firmware -

intel xeon platinum 8356h firmware -

intel xeon platinum 8360h firmware -

intel xeon platinum 8360hl firmware -

intel xeon gold 5318h firmware -

intel xeon gold 5320h firmware -

intel xeon gold 6328h firmware -

intel xeon gold 6328hl firmware -

intel xeon gold 6348h firmware -

intel xeon platinum 8353h firmware -

intel xeon platinum 8354h firmware -

intel xeon platinum 8376h firmware -

intel xeon platinum 8376hl firmware -

intel xeon platinum 8380h firmware -

intel xeon platinum 8380hl firmware -

debian debian linux 11.0

debian debian linux 12.0

netapp fas2820 firmware -

netapp affa900 firmware -

netapp fas9500 firmware -

Vendor Advisories

Debian Bug report logs - #1055962 intel-microcode: CVE-2023-23583: INTEL-SA-00950 Package: src:intel-microcode; Maintainer for src:intel-microcode is Henrique de Moraes Holschuh <hmh@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Tue, 14 Nov 2023 20:09:01 UTC Severity: grave Tags: security, ...
Benoit Morgan, Paul Grosen, Thais Moreira Hamasaki, Ke Sun, Alyssa Milburn, Hisham Shafi, Nir Shlomovich, Tavis Ormandy, Daniel Moghimi, Josh Eads, Salman Qazi, Alexandra Sandulescu, Andy Nguyen, Eduardo Vela, Doug Kwan, and Kostik Shtoyk discovered that some Intel processors mishandle repeated sequences of instructions leading to unexpected behavi ...
An issue was found in redundant REX instruction prefix values affecting third generation Intel Xeon Scalable (“Icelake“) processors The issue may allow a local third-party actor using such instructions to cause a denial of service (DOS) or achieve privilege escalation CVE-2023-23583 only affects Amazon Linux customers on EC2 metal platforms ...
An issue was found in redundant REX instruction prefix values affecting third generation Intel Xeon Scalable (“Icelake“) processors The issue may allow a local third-party actor using such instructions to cause a denial of service (DOS) or achieve privilege escalation CVE-2023-23583 only affects Amazon Linux customers on EC2 metal platforms ...
Description<!---->A security vulnerability was found in some Intel processors Execution of REP MOVSB instructions with a redundant REX prefix may result in execution continuing at an incorrect EIP address after a micro-architectural event occurs, potentially allowing privilege escalation, information disclosure and/or a denial of service via local ...
LTS-114 has been updated in the LTS channel to&nbsp;11405735338 (Platform Version: 15437750)&nbsp;for most ChromeOS devices Want to know more about Long Term Support? Click&nbsp;hereThis update contains multiple Security fixes, including:1487110&nbsp;Critical&nbsp;CVE-2023-5218&nbsp;Use after free in Site Isolation[NA] [NA] High CVE-2023-235 ...
An issue has been discovered that affects Citrix Hypervisor 82 CU1 LTSR and may allow malicious privileged code in a guest VM to compromise an AMD-based host via a passed through PCI device (CVE-2023-46835)In addition, Intel has disclosed a security issue affecting certain Intel CPUs (CVE-2023-23583) &nbsp;Although this is not an issue in the Ci ...

Github Repositories

vCenter Host Redundant Prefix Issue Check

Host Redundant Prefix Issue Check for vCenter Hosts The purpose of this script is to assist determining if VMware vCenter managed hosts have Intel processors affected by INTEL-SA-00950\CVE-2023-23583 Hypervisor patches are not required to resolve the vulnerability Contact hardware vendors for a firmware update for affected CPU if one is not already available Interpreting scr

This script can help determine the CPU ID for the processor of your system, please note that I have not added every CPU ID to this script, edit as needed.

CVE-2023-23583-Reptar- This script can help determine the CPU ID for the processor of your system, please note that I have not added every CPU ID to this script, edit as needed

Recent Articles

Intel out-of-band patch addresses privilege escalation flaw
The Register

Topics Security Off-Prem On-Prem Software Offbeat Special Features Vendor Voice Vendor Voice Resources Sapphire Rapids, Alder Lake, and Raptor Lake chip families treated for 'Redundant Prefix'

Intel on Tuesday issued an out-of-band security update to address a privilege escalation vulnerability in recent server and personal computer chips. The flaw, designated INTEL-SA-00950 and given a CVSS 3.0 score of 8.8 out of 10, affects Intel Sapphire Rapids, Alder Lake, and Raptor Lake chip families. It's being addressed with a microcode update as part of Intel's Patch Tuesday bundle of 31 security advisories that cover 104 CVEs. "Intel discovered this issue internally and was already preparin...