Privilege Escalation Vulnerability in Intel DSA and IAA Products
CVE-2024-21823

7.5HIGH

Summary

A vulnerability exists within the hardware logic of Intel DSA and Intel IAA associated with the 4th and 5th generation Xeon processors that can enable an authorized user to engage in privilege escalation. This issue stems from insecure de-synchronization, which may inadvertently facilitate unauthorized access to sensitive system functions. It underscores the importance of applying necessary mitigations to safeguard systems leveraging these Intel technologies.

Affected Version(s)

Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation Xeon(R) processors See references

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.