CVE-2021-0159

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
12/05/2022
Last modified:
05/05/2025

Description

Improper input validation in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:xeon_bronze_3204_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_bronze_3204:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_bronze_3206r_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_bronze_3206r:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5215_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5215:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5215l_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5215l:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5217_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5217:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5218_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5218:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5218b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5218b:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5218n_firmware:-:*:*:*:*:*:*:*