Lucene search

K
cveIntelCVE-2021-0148
HistoryNov 17, 2021 - 8:15 p.m.

CVE-2021-0148

2021-11-1720:15:09
CWE-532
intel
web.nvd.nist.gov
28
cve-2021-0148
information disclosure
firmware
intel
ssd
nvd

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

CVSS3

4.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

AI Score

4.3

Confidence

High

EPSS

0

Percentile

12.6%

Insertion of information into log file in firmware for some Intel® SSD DC may allow a privileged user to potentially enable information disclosure via local access.

Affected configurations

Nvd
Node
intelssd_dc_d4512Match-
AND
intelssd_dc_d4512_firmwareRange<et10
Node
intelssd_dc_p4510_u.2Match-
AND
intelssd_dc_p4510_u.2_firmwareRange<vdv10182
Node
intelssd_dc_p4510_edsffMatch-
AND
intelssd_dc_p4510_edsff_firmwareRange<vdv10284
Node
intelssd_dc_p4511_edsffMatch-
AND
intelssd_dc_p4511_edsff_firmwareRange<vdv10284
Node
intelssd_dc_p4511_m.2Match-
AND
intelssd_dc_p4511_m.2_firmwareRange<vdv10384
Node
intelssd_dc_p4610_u.2Match-
AND
intelssd_dc_p4610_u.2_firmwareRange<vdv10182
Node
intelssd_dc_p4618Match-
AND
intelssd_dc_p4618_firmwareRange<vdv10182
Node
intelssd_d-s4510Match-
AND
intelssd_d-s4510_firmwareRange<xcv10140
Node
intelssd_d7-p5608_firmwareRange<2cv1r106
AND
intelssd_d7-p5608Match-
Node
intelssd_d7-p5500_firmwareRange<1.2.0
AND
intelssd_d7-p5500Match-
Node
intelssd_d7-p5600_firmwareRange<1.2.0
AND
intelssd_d7-p5600Match-
Node
intelssd_d5-p4320_firmware
AND
intelssd_d5-p4320Match-
Node
intelssd_d5-p4420_firmware
AND
intelssd_d5-p4420Match-
Node
intelssd_d5-p4326_firmware
AND
intelssd_d5-p4326Match-
Node
intelssd_dc_p4500_firmware
AND
intelssd_dc_p4500Match-
Node
intelssd_dc_p4501_firmware
AND
intelssd_dc_p4501Match-
Node
intelssd_dc_p4600_firmware
AND
intelssd_dc_p4600Match-
Node
intelssd_dc_p4608_firmware
AND
intelssd_dc_p4608Match-
Node
intelssd_d7-p5500_firmwareRange<2cv1c030
AND
intelssd_d7-p5500Match-
Node
intelssd_d7-p5500_firmwareRange<2cv1r106
AND
intelssd_d7-p5500Match-
Node
intelssd_d7-p5500_firmwareRange<2cv1l029
AND
intelssd_d7-p5500Match-
Node
intelssd_d7-p5600_firmwareRange<2cv1l029
AND
intelssd_d7-p5600Match-
Node
intelssd_d7-p5600_firmwareRange<2cv1c030
AND
intelssd_d7-p5600Match-
VendorProductVersionCPE
intelssd_dc_d4512-cpe:2.3:h:intel:ssd_dc_d4512:-:*:*:*:*:*:*:*
intelssd_dc_d4512_firmware*cpe:2.3:o:intel:ssd_dc_d4512_firmware:*:*:*:*:*:*:*:*
intelssd_dc_p4510_u.2-cpe:2.3:h:intel:ssd_dc_p4510_u.2:-:*:*:*:*:*:*:*
intelssd_dc_p4510_u.2_firmware*cpe:2.3:o:intel:ssd_dc_p4510_u.2_firmware:*:*:*:*:*:*:*:*
intelssd_dc_p4510_edsff-cpe:2.3:h:intel:ssd_dc_p4510_edsff:-:*:*:*:*:*:*:*
intelssd_dc_p4510_edsff_firmware*cpe:2.3:o:intel:ssd_dc_p4510_edsff_firmware:*:*:*:*:*:*:*:*
intelssd_dc_p4511_edsff-cpe:2.3:h:intel:ssd_dc_p4511_edsff:-:*:*:*:*:*:*:*
intelssd_dc_p4511_edsff_firmware*cpe:2.3:o:intel:ssd_dc_p4511_edsff_firmware:*:*:*:*:*:*:*:*
intelssd_dc_p4511_m.2-cpe:2.3:h:intel:ssd_dc_p4511_m.2:-:*:*:*:*:*:*:*
intelssd_dc_p4511_m.2_firmware*cpe:2.3:o:intel:ssd_dc_p4511_m.2_firmware:*:*:*:*:*:*:*:*
Rows per page:
1-10 of 361

CNA Affected

[
  {
    "product": "Intel(R) SSD DC",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "See references"
      }
    ]
  }
]

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

CVSS3

4.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

AI Score

4.3

Confidence

High

EPSS

0

Percentile

12.6%

Related for CVE-2021-0148