7.8

CVE-2021-33847

Improper buffer restrictions in firmware for some Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products before version 22.120 may allow an authenticated user to potentially enable escalation of privilege via local access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Wi-fi 6 Ax411 Firmware Version < 22.120
   Intel ≫ Wi-fi 6 Ax411 Version -
Intel ≫ Wi-fi 6 Ax211 Firmware Version < 22.120
   Intel ≫ Wi-fi 6 Ax211 Version -
Intel ≫ Wi-fi 6 Ax210 Firmware Version < 22.120
   Intel ≫ Wi-fi 6 Ax210 Version -
Intel ≫ Wi-fi 6 Ax201 Firmware Version < 22.120
   Intel ≫ Wi-fi 6 Ax201 Version -
Intel ≫ Wi-fi 6 Ax200 Firmware Version < 22.120
   Intel ≫ Wi-fi 6 Ax200 Version -
Intel ≫ Wireless-ac 9560 Firmware Version < 22.120
   Intel ≫ Wireless-ac 9560 Version -
Intel ≫ Wireless-ac 9462 Firmware Version < 22.120
   Intel ≫ Wireless-ac 9462 Version -
Intel ≫ Wireless-ac 9461 Firmware Version < 22.120
   Intel ≫ Wireless-ac 9461 Version -
Intel ≫ Wireless-ac 9260 Firmware Version < 22.120
   Intel ≫ Wireless-ac 9260 Version -
Intel ≫ Wireless 7265 Firmware Version < 22.120
   Intel ≫ Wireless 7265 Version -
Intel ≫ Killer Wi-fi 6e Ax1690 Firmware Version < 22.120
   Intel ≫ Killer Wi-fi 6e Ax1690 Version -
Intel ≫ Killer Wi-fi 6e Ax1675 Firmware Version < 22.120
   Intel ≫ Killer Wi-fi 6e Ax1675 Version -
Intel ≫ Killer Wi-fi 6 Ax1650 Firmware Version < 22.120
   Intel ≫ Killer Wi-fi 6 Ax1650 Version -
Intel ≫ Killer Wireless-ac 1550 Firmware Version < 22.120
   Intel ≫ Killer Wireless-ac 1550 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.22% 0.123
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA-ADP 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00628.html
Patch
Vendor Advisory