CVE-2021-0060
6.6
Vector
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.7 / Impact: 5.9
Source: NVD
Description
Insufficient compartmentalization in HECI subsystem for the Intel(R) SPS before versions SPS_E5_04.01.04.516.0, SPS_E5_04.04.04.033.0, SPS_E5_04.04.03.281.0, SPS_E5_03.01.03.116.0, SPS_E3_05.01.04.309.0, SPS_02.04.00.101.0, SPS_SoC-A_05.00.03.114.0, SPS_SoC-X_04.00.04.326.0, SPS_SoC-X_03.00.03.117.0, IGN_E5_91.00.00.167.0, SPS_PHI_03.01.03.078.0 may allow an authenticated user to potentially enable escalation of privilege via physical access.
Affected (16)
Products: Intel: C620a Series Firmware, C620 Series Firmware, C240 Series Firmware, Atom P5000 Series Firmware, Atom C3000 Series Firmware, Atom C610 Series Firmware, Xeon D 1500 Series Firmware, Xeon D 2000 Series Firmware, 11th Generation Core Series Firmware, Xeon W 1300 Series Firmware, Pentium Gold Series Firmware, Celeron 6000 Series Firmware · Netapp: Cloud Backup, Hci Compute Node Bios, Hci Storage Node Bios, Solidfire Bios
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before sps_e5_04.04.03.281.0 |
| Running on/with | Platform Versions |
|---|---|
Intel C621a | All versions |
Intel C627a | All versions |
Intel C629a | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before sps_e5_04.01.04.516.0 |
| Running on/with | Platform Versions |
|---|---|
Intel C621 | All versions |
Intel C622 | All versions |
Intel C624 | All versions |
Intel C625 | All versions |
Intel C626 | All versions |
Intel C627 | All versions |
Intel C628 | All versions |
Intel C629 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before sps_e3_05.01.04.309.0 |
| Running on/with | Platform Versions |
|---|---|
Intel C242 | All versions |
Intel C246 | All versions |
Intel Cm246 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before sps_soc-a_05.00.03.114.0 |
| Running on/with | Platform Versions |
|---|---|
Intel Atom P5921b | All versions |
Intel Atom P5931b | All versions |
Intel Atom P5942b | All versions |
Intel Atom P5962b | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before sps_soc-a_04.00.04.501.0 |
| Running on/with | Platform Versions |
|---|---|
Intel Atom C3308 | All versions |
Intel Atom C3336 | All versions |
Intel Atom C3338 | All versions |
Intel Atom C3338r | All versions |
Intel Atom C3436l | All versions |
Intel Atom C3508 | All versions |
Intel Atom C3538 | All versions |
Intel Atom C3558 | All versions |
Intel Atom C3558r | All versions |
Intel Atom C3708 | All versions |
Intel Atom C3750 | All versions |
Intel Atom C3758 | All versions |
Intel Atom C3758r | All versions |
Intel Atom C3808 | All versions |
Intel Atom C3830 | All versions |
Intel Atom C3850 | All versions |
Intel Atom C3858 | All versions |
Intel Atom C3950 | All versions |
Intel Atom C3955 | All versions |
Intel Atom C3958 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before sps_phi_03.01.03.078.0 |
| Running on/with | Platform Versions |
|---|---|
Intel Atom C612 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before sps_soc-x_03.00.03.117.0 |
| Running on/with | Platform Versions |
|---|---|
Intel Xeon D 1513n | All versions |
Intel Xeon D 1518 | All versions |
Intel Xeon D 1520 | All versions |
Intel Xeon D 1521 | All versions |
Intel Xeon D 1523n | All versions |
Intel Xeon D 1527 | All versions |
Intel Xeon D 1528 | All versions |
Intel Xeon D 1529 | All versions |
Intel Xeon D 1531 | All versions |
Intel Xeon D 1533n | All versions |
Intel Xeon D 1537 | All versions |
Intel Xeon D 1539 | All versions |
Intel Xeon D 1540 | All versions |
Intel Xeon D 1541 | All versions |
Intel Xeon D 1543n | All versions |
Intel Xeon D 1548 | All versions |
Intel Xeon D 1553n | All versions |
Intel Xeon D 1557 | All versions |
Intel Xeon D 1559 | All versions |
Intel Xeon D 1567 | All versions |
Intel Xeon D 1571 | All versions |
Intel Xeon D 1577 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before sps_phi_03.01.03.078.0 |
| Running on/with | Platform Versions |
|---|---|
Intel Xeon D 2123it | All versions |
Intel Xeon D 2141i | All versions |
Intel Xeon D 2142it | All versions |
Intel Xeon D 2143it | All versions |
Intel Xeon D 2145nt | All versions |
Intel Xeon D 2146nt | All versions |
Intel Xeon D 2161i | All versions |
Intel Xeon D 2163it | All versions |
Intel Xeon D 2166nt | All versions |
Intel Xeon D 2173it | All versions |
Intel Xeon D 2177nt | All versions |
Intel Xeon D 2183it | All versions |
Intel Xeon D 2187nt | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before csme_15.0.35 |
| Running on/with | Platform Versions |
|---|---|
Intel Core I3 11100he | All versions |
Intel Core I3 1110g4 | All versions |
Intel Core I3 1115g4 | All versions |
Intel Core I3 1115g4e | All versions |
Intel Core I3 1115gre | All versions |
Intel Core I3 1120g4 | All versions |
Intel Core I3 1125g4 | All versions |
Intel Core I5 11260h | All versions |
Intel Core I5 11300h | All versions |
Intel Core I5 1130g7 | All versions |
Intel Core I5 11320h | All versions |
Intel Core I5 1135g7 | All versions |
Intel Core I5 11400 | All versions |
Intel Core I5 11400f | All versions |
Intel Core I5 11400h | All versions |
Intel Core I5 11400t | All versions |
Intel Core I5 1140g7 | All versions |
Intel Core I5 1145g7 | All versions |
Intel Core I5 1145g7e | All versions |
Intel Core I5 1145gre | All versions |
Intel Core I5 11500 | All versions |
Intel Core I5 11500h | All versions |
Intel Core I5 11500he | All versions |
Intel Core I5 11500t | All versions |
Intel Core I5 1155g7 | All versions |
Intel Core I5 11600 | All versions |
Intel Core I5 11600k | All versions |
Intel Core I5 11600kf | All versions |
Intel Core I5 11600t | All versions |
Intel Core I7 11370h | All versions |
Intel Core I7 11375h | All versions |
Intel Core I7 11390h | All versions |
Intel Core I7 11600h | All versions |
Intel Core I7 1160g7 | All versions |
Intel Core I7 1165g7 | All versions |
Intel Core I7 11700 | All versions |
Intel Core I7 11700f | All versions |
Intel Core I7 11700k | All versions |
Intel Core I7 11700kf | All versions |
Intel Core I7 11700t | All versions |
Intel Core I7 11800h | All versions |
Intel Core I7 1180g7 | All versions |
Intel Core I7 11850h | All versions |
Intel Core I7 11850he | All versions |
Intel Core I7 1185g7 | All versions |
Intel Core I7 1185g7e | All versions |
Intel Core I7 1185gre | All versions |
Intel Core I7 1195g7 | All versions |
Intel Core I9 11900 | All versions |
Intel Core I9 11900f | All versions |
Intel Core I9 11900h | All versions |
Intel Core I9 11900k | All versions |
Intel Core I9 11900kf | All versions |
Intel Core I9 11900t | All versions |
Intel Core I9 11950h | All versions |
Intel Core I9 11980hk | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before csme_15.0.35 |
| Running on/with | Platform Versions |
|---|---|
Intel Xeon W 1350 | All versions |
Intel Xeon W 1350p | All versions |
Intel Xeon W 1370 | All versions |
Intel Xeon W 1370p | All versions |
Intel Xeon W 1390 | All versions |
Intel Xeon W 1390p | All versions |
Intel Xeon W 1390t | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before csme_15.0.35 |
| Running on/with | Platform Versions |
|---|---|
Intel Pentium Gold 4410y | All versions |
Intel Pentium Gold 4415u | All versions |
Intel Pentium Gold 4415y | All versions |
Intel Pentium Gold 4417u | All versions |
Intel Pentium Gold 4425y | All versions |
Intel Pentium Gold 5405u | All versions |
Intel Pentium Gold 6405u | All versions |
Intel Pentium Gold 6500y | All versions |
Intel Pentium Gold 7505 | All versions |
Intel Pentium Gold G5400 | All versions |
Intel Pentium Gold G5400t | All versions |
Intel Pentium Gold G5420 | All versions |
Intel Pentium Gold G5420t | All versions |
Intel Pentium Gold G5500 | All versions |
Intel Pentium Gold G5500t | All versions |
Intel Pentium Gold G5600 | All versions |
Intel Pentium Gold G5600t | All versions |
Intel Pentium Gold G5620 | All versions |
Intel Pentium Gold G6400 | All versions |
Intel Pentium Gold G6400e | All versions |
Intel Pentium Gold G6400t | All versions |
Intel Pentium Gold G6400te | All versions |
Intel Pentium Gold G6405 | All versions |
Intel Pentium Gold G6405t | All versions |
Intel Pentium Gold G6500 | All versions |
Intel Pentium Gold G6500t | All versions |
Intel Pentium Gold G6505 | All versions |
Intel Pentium Gold G6505t | All versions |
Intel Pentium Gold G6600 | All versions |
Intel Pentium Gold G6605 | All versions |
Intel Pentium Gold G7400 | All versions |
Intel Pentium Gold G7400e | All versions |
Intel Pentium Gold G7400t | All versions |
Intel Pentium Gold G7400te | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before csme_15.0.35 |
| Running on/with | Platform Versions |
|---|---|
Intel Celeron 6305 | All versions |
Intel Celeron 6305e | All versions |
Intel Celeron 6600he | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| All versions | |
| All versions | |
| All versions | |
| All versions |
References (4)
Source: secure@intel.com
Third Party Advisory
Source: secure@intel.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.