CVE Vulnerabilities

CVE-2022-21216

Published: Feb 16, 2023 | Modified: Nov 21, 2024
CVSS 3.x
6.8
MEDIUM
Source:
NVD
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
7.5 IMPORTANT
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:L
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Insufficient granularity of access control in out-of-band management in some Intel(R) Atom and Intel Xeon Scalable Processors may allow a privileged user to potentially enable escalation of privilege via adjacent network access.

Affected Software

NameVendorStart VersionEnd Version
Xeon_gold_5315y_firmwareIntel- (including)- (including)
Red Hat Enterprise Linux 7RedHatmicrocode_ctl-2:2.1-73.16.el7_9*
Red Hat Enterprise Linux 8RedHatmicrocode_ctl-4:20230808-2.el8*
Red Hat Enterprise Linux 9RedHatmicrocode_ctl-4:20230808-2.el9*
Red Hat Virtualization 4 for Red Hat Enterprise Linux 8RedHatredhat-virtualization-host-0:4.5.3-202309130206_8.6*
Intel-microcodeUbuntubionic*
Intel-microcodeUbuntudevel*
Intel-microcodeUbuntuesm-infra-legacy/trusty*
Intel-microcodeUbuntuesm-infra/bionic*
Intel-microcodeUbuntuesm-infra/focal*
Intel-microcodeUbuntuesm-infra/xenial*
Intel-microcodeUbuntufocal*
Intel-microcodeUbuntujammy*
Intel-microcodeUbuntukinetic*
Intel-microcodeUbuntutrusty*
Intel-microcodeUbuntutrusty/esm*
Intel-microcodeUbuntuxenial*

References