ZeroHour

CVE-2021-0186

CVSS 3.1
6.7 medium
EPSS
<1%p25
Published
()
Modified
Description

Improper input validation in the Intel(R) SGX SDK applications compiled for SGX2 enabled processors may allow a privileged user to potentially escalation of privilege via local access.

Vendors
intel
Products
sgx sdk, xeon gold 6342 firmware, xeon gold 6346 firmware, xeon gold 6330 firmware, xeon platinum 8360y firmware, xeon gold 6354 firmware, xeon gold 6314u firmware, xeon gold 6338n firmware, xeon silver 4314 firmware, xeon silver 4316 firmware, xeon gold 5318y firmware, xeon gold 5317 firmware
Weakness
CWE-20
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news