CVE-2021-33077

MEDIUM

Intel SSD/Optane/DC - Privilege Escalation

Title source: llm
STIX 2.1

Description

Insufficient control flow management in firmware for some Intel(R) SSD, Intel(R) Optane(TM) SSD and Intel(R) SSD DC Products may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

References (1)

Core 1
Core References

Scores

CVSS v3 6.8
EPSS 0.0008
EPSS Percentile 22.5%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

Status published
Products (7)
intel/optane_memory_h10_with_solid_state_storage_firmware < tgf061k
intel/optane_memory_h20_with_solid_state_storage_firmware < pgf028k
intel/optane_ssd_900p_firmware < fw600
intel/optane_ssd_905p_firmware < fw600
intel/optane_ssd_dc_p4800x_firmware < e2010600
intel/optane_ssd_dc_p4801x_firmware < e2010600
intel/optane_ssd_p5800x_firmware < l0310200
Published May 12, 2022
Tracked Since Feb 18, 2026