CVE-2021-0200

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
17/11/2021
Last modified:
14/12/2021

Description

Out-of-bounds write in the firmware for Intel(R) Ethernet 700 Series Controllers before version 8.2 may allow a privileged user to potentially enable an escalation of privilege via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:ethernet_controller_v710-at2_firmware:*:*:*:*:*:*:*:* 8.2 (excluding)
cpe:2.3:h:intel:ethernet_controller_v710-at2:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:ethernet_controller_x710-tm4_firmware:*:*:*:*:*:*:*:* 8.2 (excluding)
cpe:2.3:h:intel:ethernet_controller_x710-tm4:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:ethernet_controller_x710-at2_firmware:*:*:*:*:*:*:*:* 8.2 (excluding)
cpe:2.3:h:intel:ethernet_controller_x710-at2:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:ethernet_controller_xxv710-am2_firmware:*:*:*:*:*:*:*:* 8.2 (excluding)
cpe:2.3:h:intel:ethernet_controller_xxv710-am2:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:ethernet_controller_xxv710-am1_firmware:*:*:*:*:*:*:*:* 8.2 (excluding)
cpe:2.3:h:intel:ethernet_controller_xxv710-am1:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:ethernet_controller_x710-am2_firmware:*:*:*:*:*:*:*:* 8.2 (excluding)
cpe:2.3:h:intel:ethernet_controller_x710-am2:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:ethernet_controller_xl710-am1_firmware:*:*:*:*:*:*:*:* 8.2 (excluding)
cpe:2.3:h:intel:ethernet_controller_xl710-am1:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:ethernet_controller_xl710-am2_firmware:*:*:*:*:*:*:*:* 8.2 (excluding)