First published: Thu May 12 2022(Updated: )
Exposure of sensitive system information due to uncleared debug information in firmware for some Intel(R) SSD DC, Intel(R) Optane(TM) SSD and Intel(R) Optane(TM) SSD DC Products may allow an unauthenticated user to potentially enable information disclosure or escalation of privilege via physical access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Optane Ssd Dc P4800x Firmware | <e2010600 | |
Intel Optane Ssd Dc P4800x | ||
Intel Optane Ssd Dc P4801x Firmware | <e2010600 | |
Intel Optane Ssd Dc P4801x | ||
Intel Optane Ssd P5800x Firmware | <l0310200 | |
Intel Optane Ssd P5800x | ||
Intel Optane Memory H20 With Solid State Storage Firmware | <pgf028k | |
Intel Optane Memory H20 With Solid State Storage | ||
Intel Optane Memory H10 With Solid State Storage Firmware | <tgf061k | |
Intel Optane Memory H10 With Solid State Storage | ||
Intel Optane Ssd 905p Firmware | <fw600 | |
Intel Optane Ssd 905p | ||
Intel Optane Ssd 900p Firmware | <fw600 | |
Intel Optane Ssd 900p |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-33080 is medium with a CVSS score of 6.8.
Some Intel(R) SSD DC, Intel(R) Optane(TM) SSD, and Intel(R) Optane(TM) SSD DC Products are affected by CVE-2021-33080.
CVE-2021-33080 is the exposure of sensitive system information due to uncleared debug information in firmware for some Intel(R) SSD DC, Intel(R) Optane(TM) SSD, and Intel(R) Optane(TM) SSD DC Products.
An unauthenticated user can potentially enable information disclosure or escalation of privilege via physical access to the affected Intel products.
Please refer to the advisories provided by Intel for information on available fixes and mitigations for CVE-2021-33080.