The vendor explicitly identifies these products as affected by this CVE.
- SIMATIC Field PG M5
- SIMATIC Field PG M6
- SIMATIC IPC427E (incl. SIPLUS variants)
- SIMATIC IPC477E
- SIMATIC IPC477E Pro
- SIMATIC IPC527G
- SIMATIC IPC547G
- SIMATIC IPC627E
- SIMATIC IPC647E
- SIMATIC IPC677E
- SIMATIC IPC847E
- SIMATIC ITP1000
- Summary
- Insufficient access control in the Linux kernel driver for some Intel Processors may allow an authenticated user to potentially enable information disclosure via local access.
- Remediation
- Update BIOS to V22.01.08 or later version
