Improper Input Validation in Intel Optane PMem Software
CVE-2021-0083

4.4MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
11 August 2021

Summary

Improper input validation found in Intel Optane Persistent Memory software prior to version 1.2.0.5446 and 2.2.0.1547 can potentially enable a privileged user to conduct a denial of service attack through local access. This flaw heightens security risks and underscores the need for prompt software updates to mitigate potential exploitation. Users are encouraged to upgrade to the latest versions to ensure system integrity and protect their data.

Affected Version(s)

Intel(R) Optane(TM) PMem versions before versions 1.2.0.5446 or 2.2.0.1547

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.