Vulnerability Description
Linear key exchange process in High-bandwidth Digital Content Protection (HDCP) System allows remote attackers to access data as plaintext, avoid device blacklists, clone devices, and create new device keyvectors by computing and using alternate key combinations for authentication.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | High-Bandwidth Digital Content Protection | 1.0 |
References
- http://marc.info/?l=bugtraq&m=100626641009560&w=2
- http://nunce.org/hdcp/hdcp111901.htmVendor Advisory
- http://www.iss.net/security_center/static/7612.php
- http://www.securityfocus.com/bid/3558
- http://marc.info/?l=bugtraq&m=100626641009560&w=2
- http://nunce.org/hdcp/hdcp111901.htmVendor Advisory
- http://www.iss.net/security_center/static/7612.php
- http://www.securityfocus.com/bid/3558
FAQ
What is CVE-2001-0903?
CVE-2001-0903 is a vulnerability with a CVSS score of 7.5 (HIGH). Linear key exchange process in High-bandwidth Digital Content Protection (HDCP) System allows remote attackers to access data as plaintext, avoid device blacklists, clone devices, and create new devic...
How severe is CVE-2001-0903?
CVE-2001-0903 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0903?
Check the references section above for vendor advisories and patch information. Affected products include: Intel High-Bandwidth Digital Content Protection.