First published: Fri Nov 11 2022(Updated: )
Improper authentication in subsystem for Intel(R) AMT before versions 11.8.93, 11.22.93, 11.12.93, 12.0.92, 14.1.67, 15.0.42, 16.1.25 may allow a privileged user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Active Management Technology Firmware | <11.8.93 | |
Intel Active Management Technology Firmware | >=11.12.0<11.12.93 | |
Intel Active Management Technology Firmware | >=11.22.0<11.22.93 | |
Intel Active Management Technology Firmware | >=12.0<12.0.92 | |
Intel Active Management Technology Firmware | >=14.1<14.1.67 | |
Intel Active Management Technology Firmware | >=15.0<15.0.42 | |
Intel Active Management Technology Firmware | >=16.1.0<16.1.25 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-33159 is a vulnerability that allows a privileged user to potentially enable escalation of privilege via local access in Intel Active Management Technology Firmware versions 11.8.93, 11.22.93, 11.12.93, 12.0.92, 14.1.67, 15.0.42, and 16.1.25.
CVE-2021-33159 has a severity rating of 6.7 (high).
To fix CVE-2021-33159, update your Intel Active Management Technology Firmware to a version that is not affected, such as versions after 16.1.25.
More information about CVE-2021-33159 can be found on the Intel Security Center Advisory page: [link](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00610.html).
CVE-2021-33159 is classified with CWE-287 (Improper Authentication).