CVE-2021-33120 — Out-of-bounds Read in Intel-microcode
Severity
5.4MEDIUMNVD
OSV5.5
EPSS
0.7%
top 28.29%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 9
Latest updateJul 28
Description
Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to potentially enable information disclosure or cause denial of service via network access.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:LExploitability: 2.8 | Impact: 2.5
Affected Packages1 packages
🔴Vulnerability Details
4GHSA▶
GHSA-43wc-84x4-9vfc: Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to po↗2022-02-11
OSV▶
CVE-2021-33120: Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to po↗2022-02-09
📋Vendor Advisories
4Debian▶
CVE-2021-33120: intel-microcode - Out of bounds read under complex microarchitectural condition in memory subsyste...↗2021