MEDIUM · 6.8

CVE-2021-33077

Insufficient control flow management in firmware for some Intel(R) SSD, Intel(R) Optane(TM) SSD and Intel(R) SSD DC Products may allow an unauthenticated user to potentially enable escalation of privi...

Vulnerability Description

Insufficient control flow management in firmware for some Intel(R) SSD, Intel(R) Optane(TM) SSD and Intel(R) SSD DC Products may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

CVSS Score

6.8

MEDIUM

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
PHYSICAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
IntelOptane Ssd Dc P4800X Firmware< e2010600
IntelOptane Ssd Dc P4800X-
IntelOptane Ssd Dc P4801X Firmware< e2010600
IntelOptane Ssd Dc P4801X-
IntelOptane Ssd P5800X Firmware< l0310200
IntelOptane Ssd P5800X-
IntelOptane Memory H20 With Solid State Storage Firmware< pgf028k
IntelOptane Memory H20 With Solid State Storage-
IntelOptane Memory H10 With Solid State Storage Firmware< tgf061k
IntelOptane Memory H10 With Solid State Storage-
IntelOptane Ssd 905P Firmware< fw600
IntelOptane Ssd 905P-
IntelOptane Ssd 900P Firmware< fw600
IntelOptane Ssd 900P-

References

FAQ

What is CVE-2021-33077?

CVE-2021-33077 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Insufficient control flow management in firmware for some Intel(R) SSD, Intel(R) Optane(TM) SSD and Intel(R) SSD DC Products may allow an unauthenticated user to potentially enable escalation of privi...

How severe is CVE-2021-33077?

CVE-2021-33077 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-33077?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Optane Ssd Dc P4800X Firmware, Intel Optane Ssd Dc P4800X, Intel Optane Ssd Dc P4801X Firmware, Intel Optane Ssd Dc P4801X, Intel Optane Ssd P5800X Firmware.