7.8

CVE-2021-0153

Out-of-bounds write in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IntelCore I9-10900x Firmware Version-
   IntelCore I9-10900x Version-
IntelCore I9-10920x Firmware Version-
   IntelCore I9-10920x Version-
IntelCore I9-10940x Firmware Version-
   IntelCore I9-10940x Version-
IntelCore I9-10980xe Firmware Version-
   IntelCore I9-10980xe Version-
IntelXeon E5-1603 V4 Firmware Version-
   IntelXeon E5-1603 V4 Version-
IntelXeon E5-1607 V4 Firmware Version-
   IntelXeon E5-1607 V4 Version-
IntelXeon E5-1620 V4 Firmware Version-
   IntelXeon E5-1620 V4 Version-
IntelXeon E5-1630 V4 Firmware Version-
   IntelXeon E5-1630 V4 Version-
IntelXeon E5-1650 V4 Firmware Version-
   IntelXeon E5-1650 V4 Version-
IntelXeon E5-1660 V4 Firmware Version-
   IntelXeon E5-1660 V4 Version-
IntelXeon E5-1680 V4 Firmware Version-
   IntelXeon E5-1680 V4 Version-
IntelXeon E5-2603 V4 Firmware Version-
   IntelXeon E5-2603 V4 Version-
IntelXeon E5-2608l V4 Firmware Version-
   IntelXeon E5-2608l V4 Version-
IntelXeon E5-2609 V4 Firmware Version-
   IntelXeon E5-2609 V4 Version-
IntelXeon E5-2618l V4 Firmware Version-
   IntelXeon E5-2618l V4 Version-
IntelXeon E5-2620 V4 Firmware Version-
   IntelXeon E5-2620 V4 Version-
IntelXeon E5-2623 V4 Firmware Version-
   IntelXeon E5-2623 V4 Version-
IntelXeon E5-2628l V4 Firmware Version-
   IntelXeon E5-2628l V4 Version-
IntelXeon E5-2630 V4 Firmware Version-
   IntelXeon E5-2630 V4 Version-
IntelXeon E5-2630l V4 Firmware Version-
   IntelXeon E5-2630l V4 Version-
IntelXeon E5-2637 V4 Firmware Version-
   IntelXeon E5-2637 V4 Version-
IntelXeon E5-2640 V4 Firmware Version-
   IntelXeon E5-2640 V4 Version-
IntelXeon E5-2643 V4 Firmware Version-
   IntelXeon E5-2643 V4 Version-
IntelXeon E5-2648l V4 Firmware Version-
   IntelXeon E5-2648l V4 Version-
IntelXeon E5-2650 V4 Firmware Version-
   IntelXeon E5-2650 V4 Version-
IntelXeon E5-2650l V4 Firmware Version-
   IntelXeon E5-2650l V4 Version-
IntelXeon E5-2658 V4 Firmware Version-
   IntelXeon E5-2658 V4 Version-
IntelXeon E5-2660 V4 Firmware Version-
   IntelXeon E5-2660 V4 Version-
IntelXeon E5-2667 V4 Firmware Version-
   IntelXeon E5-2667 V4 Version-
IntelXeon E5-2679 V4 Firmware Version-
   IntelXeon E5-2679 V4 Version-
IntelXeon E5-2680 V4 Firmware Version-
   IntelXeon E5-2680 V4 Version-
IntelXeon E5-2683 V4 Firmware Version-
   IntelXeon E5-2683 V4 Version-
IntelXeon E5-2687w V4 Firmware Version-
   IntelXeon E5-2687w V4 Version-
IntelXeon E5-2689 V4 Firmware Version-
   IntelXeon E5-2689 V4 Version-
IntelXeon E5-2690 V4 Firmware Version-
   IntelXeon E5-2690 V4 Version-
IntelXeon E5-2695 V4 Firmware Version-
   IntelXeon E5-2695 V4 Version-
IntelXeon E5-2697 V4 Firmware Version-
   IntelXeon E5-2697 V4 Version-
IntelXeon E5-2697a V4 Firmware Version-
   IntelXeon E5-2697a V4 Version-
IntelXeon E5-2698 V4 Firmware Version-
   IntelXeon E5-2698 V4 Version-
IntelXeon E5-2699 V4 Firmware Version-
   IntelXeon E5-2699 V4 Version-
IntelXeon E5-2699a V4 Firmware Version-
   IntelXeon E5-2699a V4 Version-
IntelXeon E5-2699r V4 Firmware Version-
   IntelXeon E5-2699r V4 Version-
IntelXeon E5-4610 V4 Firmware Version-
   IntelXeon E5-4610 V4 Version-
IntelXeon E5-4610a V4 Firmware Version-
   IntelXeon E5-4610a V4 Version-
IntelXeon E5-4620 V4 Firmware Version-
   IntelXeon E5-4620 V4 Version-
IntelXeon E5-4627 V4 Firmware Version-
   IntelXeon E5-4627 V4 Version-
IntelXeon E5-4628l V4 Firmware Version-
   IntelXeon E5-4628l V4 Version-
IntelXeon E5-4640 V4 Firmware Version-
   IntelXeon E5-4640 V4 Version-
IntelXeon E5-4650 V4 Firmware Version-
   IntelXeon E5-4650 V4 Version-
IntelXeon E5-4655 V4 Firmware Version-
   IntelXeon E5-4655 V4 Version-
IntelXeon E5-4660 V4 Firmware Version-
   IntelXeon E5-4660 V4 Version-
IntelXeon E5-4667 V4 Firmware Version-
   IntelXeon E5-4667 V4 Version-
IntelXeon E5-4669 V4 Firmware Version-
   IntelXeon E5-4669 V4 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.419
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
134c704f-9b21-4f2e-91b3-4a467353bcc0 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.