CVE-2021-0060: High severity intel c620 series firmware vulnerability
Insufficient compartmentalization in HECI subsystem for the Intel(R) SPS before versions SPSE504.01.04.516.0, SPSE504.04.04.033.0, SPSE504.04.03.281.0, SPSE503.01.03.116.0, SPSE305.01.04.309.0, SPS02.04.00.101.0, SPSSoC-A05.00.03.114.0, SPSSoC-X04.00.04.326.0, SPSSoC-X03.00.03.117.0, IGNE591.00.00.167.0, SPSPHI03.01.03.078.0 may allow an authenticated user to potentially enable escalation of privilege via physical access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-0060?
CVE-2021-0060 is rated as high severity due to insufficient compartmentalization in the HECI subsystem of Intel's firmware.
How do I fix CVE-2021-0060?
To fix CVE-2021-0060, update the affected Intel firmware to the latest versions as indicated in the Intel advisory.
What products are affected by CVE-2021-0060?
CVE-2021-0060 affects various Intel firmware products, including the c620 and c240 series among others.
What is the impact of CVE-2021-0060?
The impact of CVE-2021-0060 includes potential unauthorized access and manipulation of system resources.
Is CVE-2021-0060 being actively exploited?
As of the last reports, there have been no noted active exploitations of CVE-2021-0060 in the wild.