VYPR

Core M3 8100y Firmware

by Intel

CVEs (25)

  • CVE-2021-33123HigMay 12, 2022
    risk 0.51cvss 7.8epss 0.00

    Improper access control in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

  • CVE-2021-0156HigFeb 9, 2022
    risk 0.51cvss 7.8epss 0.00

    Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable an escalation of privilege via local access.

  • CVE-2021-0117HigFeb 9, 2022
    risk 0.51cvss 7.8epss 0.00

    Pointer issues in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.

  • CVE-2021-0116HigFeb 9, 2022
    risk 0.51cvss 7.8epss 0.00

    Out-of-bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.

  • CVE-2019-0155HigNov 14, 2019
    risk 0.51cvss 7.8epss 0.01

    Insufficient access control in a subsystem for Intel (R) processor graphics in 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families; Intel(R) Pentium(R) Processor J, N, Silver and Gold Series; Intel(R) Celeron(R) Processor J, N, G3900 and G4900 Series; Intel(R)…

  • CVE-2022-33894HigMay 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-44611MedAug 11, 2023
    risk 0.45cvss 6.9epss 0.00

    Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via adjacent access.

  • CVE-2021-33124MedMay 12, 2022
    risk 0.44cvss 6.7epss 0.00

    Out-of-bounds write in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

  • CVE-2021-0118MedFeb 9, 2022
    risk 0.44cvss 6.7epss 0.00

    Out-of-bounds read in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.

  • CVE-2022-40982MedAug 11, 2023
    risk 0.43cvss 6.5epss 0.03

    Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2021-0125MedFeb 9, 2022
    risk 0.43cvss 6.6epss 0.00

    Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.

  • CVE-2021-0124MedFeb 9, 2022
    risk 0.43cvss 6.6epss 0.00

    Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.

  • CVE-2019-11135MedNov 14, 2019
    risk 0.43cvss 6.5epss 0.03

    TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.

  • CVE-2018-12207MedNov 14, 2019
    risk 0.42cvss 6.5epss 0.01

    Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of service of the host system via local access.

  • CVE-2021-0119MedFeb 9, 2022
    risk 0.40cvss 6.2epss 0.00

    Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.

  • CVE-2022-29901MedJul 12, 2022
    risk 0.37cvss 5.6epss 0.05

    Intel microprocessor generations 6 to 8 are affected by a new Spectre variant that is able to bypass their retpoline mitigation in the kernel to leak arbitrary data. An attacker with unprivileged user access can hijack return instructions to achieve arbitrary speculative code…

  • CVE-2022-26373MedAug 18, 2022
    risk 0.36cvss 5.5epss 0.00

    Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.

  • CVE-2022-21180MedJun 15, 2022
    risk 0.36cvss 5.5epss 0.00

    Improper input validation for some Intel(R) Processors may allow an authenticated user to potentially cause a denial of service via local access.

  • CVE-2022-21151MedMay 12, 2022
    risk 0.36cvss 5.5epss 0.00

    Processor optimization removal or modification of security-critical code for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2020-8695MedNov 12, 2020
    risk 0.36cvss 5.5epss 0.00

    Observable discrepancy in the RAPL interface for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.

Page 1 of 2