CVE-2022-21216: High severity intel xeon gold 5315y firmware vulnerability
A potential security vulnerability in some Intel(R) Atom(R) and Intel(R) Xeon(R) Scalable Processors may allow escalation of privilege. Intel is releasing firmware updates to mitigate this potential vulnerability.
Reference: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00700.html
Other sources
Insufficient granularity of access control in out-of-band management in some Intel(R) Atom and Intel Xeon Scalable Processors may allow a privileged user to potentially enable escalation of privilege via adjacent network access.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-21216?
The severity of CVE-2022-21216 is categorized as critical due to the potential for privilege escalation.
How do I fix CVE-2022-21216?
To fix CVE-2022-21216, update the affected Intel processor firmware to the latest version provided by Intel.
What products are affected by CVE-2022-21216?
CVE-2022-21216 affects various Intel Atom and Xeon Scalable Processors, including specific firmware versions.
What types of vulnerabilities does CVE-2022-21216 represent?
CVE-2022-21216 represents an insufficient granularity of access control that allows privilege escalation.
Can CVE-2022-21216 be exploited remotely?
Yes, CVE-2022-21216 can be exploited via adjacent network access by a privileged user.