CVE-2021-0188

HIGH

Intel(R) Processors - Privilege Escalation

Title source: llm
STIX 2.1

Description

Return of pointer value outside of expected range in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

References (2)

Core 2

Scores

CVSS v3 7.8
EPSS 0.0014
EPSS Percentile 33.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-119
Status published
Products (37)
intel/xeon_e3-1220_v5_firmware
intel/xeon_e3-1220_v6_firmware
intel/xeon_e3-1225_v5_firmware
intel/xeon_e3-1225_v6_firmware
intel/xeon_e3-1230_v5_firmware
intel/xeon_e3-1230_v6_firmware
intel/xeon_e3-1235l_v5_firmware
intel/xeon_e3-1240_v5_firmware
intel/xeon_e3-1240_v6_firmware
intel/xeon_e3-1240l_v5_firmware
... and 27 more
Published May 12, 2022
Tracked Since Feb 18, 2026