Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-0146

Опубликовано: 08 нояб. 2021
Источник: redhat
CVSS3: 7.1
EPSS Низкий

Описание

Hardware allows activation of test or debug logic at runtime for some Intel(R) processors which may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Hardware allows activation of test and debug logic at runtime for some Intel(R) processors which may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Отчет

The required microcode update is to be applied during system firmware initialisation stage and the fix is not OS-loadable as communicated by Intel.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6microcode_ctlAffected
Red Hat Enterprise Linux 7microcode_ctlWill not fix
Red Hat Enterprise Linux 8microcode_ctlWill not fix
Red Hat Virtualization 4redhat-virtualization-hostAffected

Показывать по

Дополнительная информация

Статус:

Important

EPSS

Процентиль: 42%
0.00194
Низкий

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 6.8
ubuntu
больше 3 лет назад

Hardware allows activation of test or debug logic at runtime for some Intel(R) processors which may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

CVSS3: 6.8
nvd
больше 3 лет назад

Hardware allows activation of test or debug logic at runtime for some Intel(R) processors which may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

CVSS3: 6.8
github
около 3 лет назад

Hardware allows activation of test or debug logic at runtime for some Intel(R) processors which may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

CVSS3: 7.1
fstec
почти 4 года назад

Уязвимость микропрограммного обеспечения BIOS/UEFI процессоров Intel, позволяющая нарушителю повысить свои привилегии и получить несанкционированный доступ к защищаемой информации

suse-cvrf
больше 3 лет назад

Security update for ucode-intel

EPSS

Процентиль: 42%
0.00194
Низкий

7.1 High

CVSS3