Vulnerability Description
Incorrect default permissions in the Intel(R) Optane(TM) DC Persistent Memory for Windows software versions before 2.00.00.3842 or 1.00.00.3515 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Ipmctl | < 2.00.00.3842 |
| Intel | Xeon Gold 5315Y | - |
| Intel | Xeon Gold 5317 | - |
| Intel | Xeon Gold 5318H | - |
| Intel | Xeon Gold 5318N | - |
| Intel | Xeon Gold 5318S | - |
| Intel | Xeon Gold 5318Y | - |
| Intel | Xeon Gold 5320 | - |
| Intel | Xeon Gold 5320H | - |
| Intel | Xeon Gold 5320T | - |
| Intel | Xeon Gold 6312U | - |
| Intel | Xeon Gold 6314U | - |
| Intel | Xeon Gold 6326 | - |
| Intel | Xeon Gold 6328H | - |
| Intel | Xeon Gold 6328Hl | - |
| Intel | Xeon Gold 6330 | - |
| Intel | Xeon Gold 6330H | - |
| Intel | Xeon Gold 6330N | - |
| Intel | Xeon Gold 6334 | - |
| Intel | Xeon Gold 6336Y | - |
Related Weaknesses (CWE)
References
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00541.Vendor Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00541.Vendor Advisory
FAQ
What is CVE-2021-0106?
CVE-2021-0106 is a vulnerability with a CVSS score of 7.8 (HIGH). Incorrect default permissions in the Intel(R) Optane(TM) DC Persistent Memory for Windows software versions before 2.00.00.3842 or 1.00.00.3515 may allow an authenticated user to potentially enable es...
How severe is CVE-2021-0106?
CVE-2021-0106 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-0106?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Ipmctl, Intel Xeon Gold 5315Y, Intel Xeon Gold 5317, Intel Xeon Gold 5318H, Intel Xeon Gold 5318N.