CVE-2021-0109: High severity intel compute stick stk1a32sc vulnerability
Published Feb 17, 2021
·Updated
Insecure inherited permissions for the Intel(R) SOC driver package for STK1A32SC before version 604 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
2 affected components
Intel Compute Stick Stk1a32sc Firmware<604
Intel Compute Stick Stk1a32sc
Event History
Feb 17, 2021
CVE Published
via MITRE·01:36 PM
Data Sourced
via MITRE·01:36 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-0109?
CVE-2021-0109 is a vulnerability that allows an authenticated user to potentially enable escalation of privilege via local access.
2
What software is affected by CVE-2021-0109?
The Intel Compute Stick Stk1a32sc Firmware before version 604 is affected by CVE-2021-0109.
3
What is the severity of CVE-2021-0109?
CVE-2021-0109 has a severity rating of 7.8 (high).
4
How can an attacker exploit CVE-2021-0109?
An attacker can exploit CVE-2021-0109 by leveraging insecure inherited permissions in the Intel(R) SOC driver package for STK1A32SC.
5
Is the Intel Compute Stick Stk1a32sc vulnerable to CVE-2021-0109?
The Intel Compute Stick Stk1a32sc is not vulnerable to CVE-2021-0109.