CVE-2021-33149: Medium severity intel core processors firmware vulnerability
Published May 12, 2022
·Updated
Observable behavioral discrepancy in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
Affected Software
32 affected components
Intel Core Processors Firmware
Intel Core Processors
Intel Pentium Processors Firmware
Intel Pentium Processors
Intel Celeron Processors Firmware
Intel Celeron Processors
Intel Xeon Processors Firmware
Intel Xeon processors
Intel Itanium Processors Firmware
Intel Itanium Processors
Intel Atom Processors Firmware
Intel Atom Processors
Intel Xeon Phi Processors Firmware
Intel Xeon Phi Processors
Intel Quark Soc Firmware
Intel Quark Soc
All of the following
Intel Core Processors Firmware
Intel Core Processors
All of the following
Intel Pentium Processors Firmware
Intel Pentium Processors
All of the following
Intel Celeron Processors Firmware
Intel Celeron Processors
All of the following
Intel Xeon Processors Firmware
Intel Xeon processors
All of the following
Intel Itanium Processors Firmware
Intel Itanium Processors
All of the following
Intel Atom Processors Firmware
Intel Atom Processors
All of the following
Intel Xeon Phi Processors Firmware
Intel Xeon Phi Processors
All of the following
Intel Quark Soc Firmware
Intel Quark Soc
Event History
May 12, 2022
CVE Published
via MITRE·04:36 PM
Data Sourced
via MITRE·04:36 PM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-33149?
CVE-2021-33149 has been rated as having a medium severity level due to the potential for local information disclosure.
2
How do I fix CVE-2021-33149?
To fix CVE-2021-33149, update the firmware for your Intel Core, Pentium, or Celeron processors to the latest version provided by Intel.
3
Who is affected by CVE-2021-33149?
CVE-2021-33149 affects users of Intel Core, Pentium, and Celeron processors with outdated firmware.
4
What is the nature of the vulnerability in CVE-2021-33149?
CVE-2021-33149 is an observable behavioral discrepancy that may allow information disclosure with local access.
5
Can authorized users exploit CVE-2021-33149?
Yes, authorized users with local access may exploit CVE-2021-33149 to potentially enable information disclosure.