CVE-2021-33080

MEDIUM

Intel SSD/Optane - Info Disclosure

Title source: llm
STIX 2.1

Description

Exposure of sensitive system information due to uncleared debug information in firmware for some Intel(R) SSD DC, Intel(R) Optane(TM) SSD and Intel(R) Optane(TM) SSD DC Products may allow an unauthenticated user to potentially enable information disclosure or escalation of privilege via physical access.

Scores

CVSS v3 6.8
EPSS 0.0015
EPSS Percentile 34.8%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-212
Status published
Products (7)
intel/optane_memory_h10_with_solid_state_storage_firmware < tgf061k
intel/optane_memory_h20_with_solid_state_storage_firmware < pgf028k
intel/optane_ssd_900p_firmware < fw600
intel/optane_ssd_905p_firmware < fw600
intel/optane_ssd_dc_p4800x_firmware < e2010600
intel/optane_ssd_dc_p4801x_firmware < e2010600
intel/optane_ssd_p5800x_firmware < l0310200
Published May 12, 2022
Tracked Since Feb 18, 2026