CVE-2021-0086Observable Discrepancy in Intel Brand Verification Tool

Severity
6.5MEDIUMNVD
EPSS
0.1%
top 78.17%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 9
Latest updateMay 2

Description

Observable response discrepancy in floating-point operations for some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:NExploitability: 2.0 | Impact: 4.0

Affected Packages1 packages

Also affects: Fedora 33, 34

🔴Vulnerability Details

1
GHSA
GHSA-9j8p-g942-2m9h: Improper permissions in the installer for the Intel(R) Brand Verification Tool before version 112022-05-24

📋Vendor Advisories

1
CISA ICS
Mitsubishi Electric Factory Automation Products2023-05-02
CVE-2021-0086 — Observable Discrepancy in Intel | cvebase