CVE-2021-0196: High severity intel lapqc71a firmware vulnerability
Published Aug 11, 2021
·Updated
Improper access control in kernel mode driver for some Intel(R) NUC 9 Extreme Laptop Kits before version 2.2.0.20 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
8 affected components
Intel Lapqc71a Firmware<2.2.0.20
Intel Lapqc71a
Intel Lapqc71b Firmware<2.2.0.20
Intel Lapqc71b
Intel Lapqc71c Firmware<2.2.0.20
Intel Lapqc71c
Intel Lapqc71d Firmware<2.2.0.20
Intel Lapqc71d
Remediation
Event History
Aug 11, 2021
CVE Published
via MITRE·12:48 PM
Data Sourced
via MITRE·12:48 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-0196.
2
What is the severity of CVE-2021-0196?
The severity of CVE-2021-0196 is rated as high.
3
Which version of Intel NUC 9 Extreme Laptop Kits are affected by CVE-2021-0196?
Some Intel(R) NUC 9 Extreme Laptop Kits before version 2.2.0.20 are affected by CVE-2021-0196.
4
What is the potential impact of CVE-2021-0196?
CVE-2021-0196 may allow an authenticated user to potentially enable escalation of privilege via local access.
5
How can I fix the vulnerability identified in CVE-2021-0196?
To fix this vulnerability, update your Intel NUC 9 Extreme Laptop Kits to version 2.2.0.20 or newer.