{"id":"CVE-2022-26083","details":"Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021.5 may allow an unauthenticated user to potentially enable information disclosure via local access.","modified":"2026-04-10T04:46:06.743159Z","published":"2025-02-14T21:15:11.947Z","references":[{"type":"ADVISORY","url":"https://intel.com/content/www/us/en/security-center/advisory/intel-sa-00667.html"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/intel/ipp-crypto","events":[{"introduced":"0"},{"fixed":"2b8c5c82c87e3fe37f132f632557367d9bc8a69b"}],"database_specific":{"versions":[{"introduced":"0"},{"fixed":"2021.5"}]}}],"versions":["ippcp_2019b_r","ippcp_2020u2"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-26083.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N"}]}