CVE Vulnerabilities

CVE-2021-0146

Published: Nov 17, 2021 | Modified: Nov 21, 2024
CVSS 3.x
6.8
MEDIUM
Source:
NVD
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
7.1 IMPORTANT
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Hardware allows activation of test or debug logic at runtime for some Intel(R) processors which may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Affected Software

NameVendorStart VersionEnd Version
Pentium_j6426_firmwareIntel- (including)- (including)
Intel-microcodeUbuntubionic*
Intel-microcodeUbuntudevel*
Intel-microcodeUbuntuesm-infra-legacy/trusty*
Intel-microcodeUbuntuesm-infra/bionic*
Intel-microcodeUbuntuesm-infra/focal*
Intel-microcodeUbuntuesm-infra/xenial*
Intel-microcodeUbuntufocal*
Intel-microcodeUbuntuimpish*
Intel-microcodeUbuntujammy*
Intel-microcodeUbuntukinetic*
Intel-microcodeUbuntutrusty*
Intel-microcodeUbuntutrusty/esm*
Intel-microcodeUbuntuupstream*
Intel-microcodeUbuntuxenial*

References