Escalation of Privilege in Intel Atom and Xeon Scalable Processors
CVE-2022-21216

7.5HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
16 February 2023

Summary

The vulnerability in selected models of Intel Atom and Xeon Scalable Processors is rooted in the insufficient granularity of access control mechanisms within their out-of-band management systems. This flaw allows a privileged user to potentially escalate their privileges through adjacent network access, thereby increasing the risk of unauthorized actions or data breaches. Organizations using affected processors should assess their security configurations and implement the recommended patches to mitigate potential risks.

Affected Version(s)

Intel(R) Atom and Intel Xeon Scalable Processors See references

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.