MEDIUM · 5.5

CVE-2022-21136

Improper input validation for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable denial of service via local access.

Vulnerability Description

Improper input validation for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable denial of service via local access.

CVSS Score

5.5

MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
IntelCore I9-7940X Firmware-
IntelCore I9-7940X-
IntelCore I9-7960X Firmware-
IntelCore I9-7960X-
IntelCore I9-7980Xe Firmware-
IntelCore I9-7980Xe-
IntelCore I9-7920X Firmware-
IntelCore I9-7920X-
IntelCore I9-7900X Firmware-
IntelCore I9-7900X-
IntelXeon Gold 6138P Firmware-
IntelXeon Gold 6138P-
IntelXeon Bronze 3104 Firmware-
IntelXeon Bronze 3104-
IntelXeon Bronze 3106 Firmware-
IntelXeon Bronze 3106-
IntelXeon Gold 5115 Firmware-
IntelXeon Gold 5115-
IntelXeon Gold 5118 Firmware-
IntelXeon Gold 5118-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-21136?

CVE-2022-21136 is a vulnerability with a CVSS score of 5.5 (MEDIUM). Improper input validation for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable denial of service via local access.

How severe is CVE-2022-21136?

CVE-2022-21136 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-21136?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Core I9-7940X Firmware, Intel Core I9-7940X, Intel Core I9-7960X Firmware, Intel Core I9-7960X, Intel Core I9-7980Xe Firmware.