7.8

CVE-2021-0106

Incorrect default permissions in the Intel(R) Optane(TM) DC Persistent Memory for Windows software versions before 2.00.00.3842 or 1.00.00.3515 may allow an authenticated user to potentially enable escalation of privilege via local access.

Data is provided by the National Vulnerability Database (NVD)
IntelIpmctl SwPlatformwindows Version < 2.00.00.3842
   IntelXeon Gold 5315y Version-
   IntelXeon Gold 5317 Version-
   IntelXeon Gold 5318h Version-
   IntelXeon Gold 5318n Version-
   IntelXeon Gold 5318s Version-
   IntelXeon Gold 5318y Version-
   IntelXeon Gold 5320 Version-
   IntelXeon Gold 5320h Version-
   IntelXeon Gold 5320t Version-
   IntelXeon Gold 6312u Version-
   IntelXeon Gold 6314u Version-
   IntelXeon Gold 6326 Version-
   IntelXeon Gold 6328h Version-
   IntelXeon Gold 6328hl Version-
   IntelXeon Gold 6330 Version-
   IntelXeon Gold 6330h Version-
   IntelXeon Gold 6330n Version-
   IntelXeon Gold 6334 Version-
   IntelXeon Gold 6336y Version-
   IntelXeon Gold 6338 Version-
   IntelXeon Gold 6338n Version-
   IntelXeon Gold 6338t Version-
   IntelXeon Gold 6342 Version-
   IntelXeon Gold 6346 Version-
   IntelXeon Gold 6348 Version-
   IntelXeon Gold 6348h Version-
   IntelXeon Gold 6354 Version-
   IntelXeon Platinum 8321hc Version-
   IntelXeon Platinum 8351n Version-
   IntelXeon Platinum 8352m Version-
   IntelXeon Platinum 8352s Version-
   IntelXeon Platinum 8352v Version-
   IntelXeon Platinum 8352y Version-
   IntelXeon Platinum 8353h Version-
   IntelXeon Platinum 8354h Version-
   IntelXeon Platinum 8356h Version-
   IntelXeon Platinum 8358 Version-
   IntelXeon Platinum 8358p Version-
   IntelXeon Platinum 8360h Version-
   IntelXeon Platinum 8360hl Version-
   IntelXeon Platinum 8360y Version-
   IntelXeon Platinum 8362 Version-
   IntelXeon Platinum 8368 Version-
   IntelXeon Platinum 8368q Version-
   IntelXeon Platinum 8376h Version-
   IntelXeon Platinum 8376hl Version-
   IntelXeon Platinum 8380 Version-
   IntelXeon Platinum 8380h Version-
   IntelXeon Platinum 8380hl Version-
   IntelXeon Silver 4309y Version-
   IntelXeon Silver 4310 Version-
   IntelXeon Silver 4310t Version-
   IntelXeon Silver 4314 Version-
   IntelXeon Silver 4316 Version-
IntelIpmctl SwPlatformwindows Version < 1.00.00.3515
   IntelXeon Bronze 3204 Version-
   IntelXeon Bronze 3206r Version-
   IntelXeon Gold 5215 Version-
   IntelXeon Gold 5215l Version-
   IntelXeon Gold 5217 Version-
   IntelXeon Gold 5218 Version-
   IntelXeon Gold 5218b Version-
   IntelXeon Gold 5218n Version-
   IntelXeon Gold 5218r Version-
   IntelXeon Gold 5218t Version-
   IntelXeon Gold 5219y Version-
   IntelXeon Gold 5220 Version-
   IntelXeon Gold 5220r Version-
   IntelXeon Gold 5220s Version-
   IntelXeon Gold 5220t Version-
   IntelXeon Gold 5222 Version-
   IntelXeon Gold 6208u Version-
   IntelXeon Gold 6209u Version-
   IntelXeon Gold 6210u Version-
   IntelXeon Gold 6212u Version-
   IntelXeon Gold 6222 Version-
   IntelXeon Gold 6222v Version-
   IntelXeon Gold 6226 Version-
   IntelXeon Gold 6226r Version-
   IntelXeon Gold 6230 Version-
   IntelXeon Gold 6230n Version-
   IntelXeon Gold 6230r Version-
   IntelXeon Gold 6230t Version-
   IntelXeon Gold 6234 Version-
   IntelXeon Gold 6238 Version-
   IntelXeon Gold 6238l Version-
   IntelXeon Gold 6238r Version-
   IntelXeon Gold 6238t Version-
   IntelXeon Gold 6240 Version-
   IntelXeon Gold 6240l Version-
   IntelXeon Gold 6240r Version-
   IntelXeon Gold 6240y Version-
   IntelXeon Gold 6242 Version-
   IntelXeon Gold 6242r Version-
   IntelXeon Gold 6244 Version-
   IntelXeon Gold 6246 Version-
   IntelXeon Gold 6246r Version-
   IntelXeon Gold 6248 Version-
   IntelXeon Gold 6248r Version-
   IntelXeon Gold 6250 Version-
   IntelXeon Gold 6250l Version-
   IntelXeon Gold 6252 Version-
   IntelXeon Gold 6252n Version-
   IntelXeon Gold 6254 Version-
   IntelXeon Gold 6256 Version-
   IntelXeon Gold 6258r Version-
   IntelXeon Gold 6262 Version-
   IntelXeon Gold 6262v Version-
   IntelXeon Gold 6269y Version-
   IntelXeon Platinum 8253 Version-
   IntelXeon Platinum 8256 Version-
   IntelXeon Platinum 8260 Version-
   IntelXeon Platinum 8260l Version-
   IntelXeon Platinum 8260y Version-
   IntelXeon Platinum 8268 Version-
   IntelXeon Platinum 8270 Version-
   IntelXeon Platinum 8274 Version-
   IntelXeon Platinum 8276 Version-
   IntelXeon Platinum 8276l Version-
   IntelXeon Platinum 8280 Version-
   IntelXeon Platinum 8280l Version-
   IntelXeon Platinum 8284 Version-
   IntelXeon Platinum 9221 Version-
   IntelXeon Platinum 9222 Version-
   IntelXeon Platinum 9242 Version-
   IntelXeon Platinum 9282 Version-
   IntelXeon Silver 4208 Version-
   IntelXeon Silver 4209t Version-
   IntelXeon Silver 4210 Version-
   IntelXeon Silver 4210r Version-
   IntelXeon Silver 4210t Version-
   IntelXeon Silver 4214 Version-
   IntelXeon Silver 4214r Version-
   IntelXeon Silver 4214y Version-
   IntelXeon Silver 4215 Version-
   IntelXeon Silver 4215r Version-
   IntelXeon Silver 4216 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.04% 0.113
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
CWE-276 Incorrect Default Permissions

During installation, installed file permissions are set to allow anyone to modify those files.