7.8

CVE-2021-33060

Out-of-bounds write in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.

Data is provided by the National Vulnerability Database (NVD)
IntelXeon Gold 5315y Firmware Version-
   IntelXeon Gold 5315y Version-
IntelXeon Gold 5317 Firmware Version-
   IntelXeon Gold 5317 Version-
IntelXeon Gold 5318n Firmware Version-
   IntelXeon Gold 5318n Version-
IntelXeon Gold 5318s Firmware Version-
   IntelXeon Gold 5318s Version-
IntelXeon Gold 5318y Firmware Version-
   IntelXeon Gold 5318y Version-
IntelXeon Gold 5320 Firmware Version-
   IntelXeon Gold 5320 Version-
IntelXeon Gold 5320t Firmware Version-
   IntelXeon Gold 5320t Version-
IntelXeon Gold 6312u Firmware Version-
   IntelXeon Gold 6312u Version-
IntelXeon Gold 6314u Firmware Version-
   IntelXeon Gold 6314u Version-
IntelXeon Gold 6326 Firmware Version-
   IntelXeon Gold 6326 Version-
IntelXeon Gold 6330 Firmware Version-
   IntelXeon Gold 6330 Version-
IntelXeon Gold 6330n Firmware Version-
   IntelXeon Gold 6330n Version-
IntelXeon Gold 6334 Firmware Version-
   IntelXeon Gold 6334 Version-
IntelXeon Gold 6336y Firmware Version-
   IntelXeon Gold 6336y Version-
IntelXeon Gold 6338 Firmware Version-
   IntelXeon Gold 6338 Version-
IntelXeon Gold 6338n Firmware Version-
   IntelXeon Gold 6338n Version-
IntelXeon Gold 6338t Firmware Version-
   IntelXeon Gold 6338t Version-
IntelXeon Gold 6342 Firmware Version-
   IntelXeon Gold 6342 Version-
IntelXeon Gold 6346 Firmware Version-
   IntelXeon Gold 6346 Version-
IntelXeon Gold 6348 Firmware Version-
   IntelXeon Gold 6348 Version-
IntelXeon Gold 6354 Firmware Version-
   IntelXeon Gold 6354 Version-
IntelXeon Platinum 8358 Firmware Version-
   IntelXeon Platinum 8358 Version-
IntelXeon Platinum 8362 Firmware Version-
   IntelXeon Platinum 8362 Version-
IntelXeon Platinum 8368 Firmware Version-
   IntelXeon Platinum 8368 Version-
IntelXeon Platinum 8380 Firmware Version-
   IntelXeon Platinum 8380 Version-
IntelXeon Silver 4309y Firmware Version-
   IntelXeon Silver 4309y Version-
IntelXeon Silver 4310 Firmware Version-
   IntelXeon Silver 4310 Version-
IntelXeon Silver 4310t Firmware Version-
   IntelXeon Silver 4310t Version-
IntelXeon Silver 4314 Firmware Version-
   IntelXeon Silver 4314 Version-
IntelXeon Silver 4316 Firmware Version-
   IntelXeon Silver 4316 Version-
IntelXeon Gold 6330h Firmware Version-
   IntelXeon Gold 6330h Version-
IntelXeon Gold 5318h Firmware Version-
   IntelXeon Gold 5318h Version-
IntelXeon Gold 5320h Firmware Version-
   IntelXeon Gold 5320h Version-
IntelXeon Gold 6328h Firmware Version-
   IntelXeon Gold 6328h Version-
IntelXeon Gold 6328hl Firmware Version-
   IntelXeon Gold 6328hl Version-
IntelXeon Gold 6348h Firmware Version-
   IntelXeon Gold 6348h Version-
NetappAff C190 Firmware Version-
   NetappAff C190 Version-
NetappAff A200 Firmware Version-
   NetappAff A200 Version-
NetappAff A220 Firmware Version-
   NetappAff A220 Version-
NetappAff A250 Firmware Version-
   NetappAff A250 Version-
NetappAff A300 Firmware Version-
   NetappAff A300 Version-
NetappAff A320 Firmware Version-
   NetappAff A320 Version-
NetappAff A400 Firmware Version-
   NetappAff A400 Version-
NetappAff A700 Firmware Version-
   NetappAff A700 Version-
NetappAff A700s Firmware Version-
   NetappAff A700s Version-
NetappAff A800 Firmware Version-
   NetappAff A800 Version-
NetappAff A900 Firmware Version-
   NetappAff A900 Version-
NetappFas500f Firmware Version-
   NetappFas500f Version-
NetappFas2600 Firmware Version-
   NetappFas2600 Version-
NetappFas2700 Firmware Version-
   NetappFas2700 Version-
NetappFas8200 Firmware Version-
   NetappFas8200 Version-
NetappFas8300 Firmware Version-
   NetappFas8300 Version-
NetappFas8700 Firmware Version-
   NetappFas8700 Version-
NetappFas9000 Firmware Version-
   NetappFas9000 Version-
NetappFas9500 Firmware Version-
   NetappFas9500 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.16% 0.377
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
134c704f-9b21-4f2e-91b3-4a467353bcc0 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.