VYPR

Xeon Gold 6338t Firmware

by Intel

CVEs (19)

  • CVE-2023-23583HigNov 14, 2023
    risk 0.57cvss 8.8epss 0.02

    Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.

  • CVE-2021-33060HigAug 18, 2022
    risk 0.51cvss 7.8epss 0.00

    Out-of-bounds write in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2021-33123HigMay 12, 2022
    risk 0.51cvss 7.8epss 0.00

    Improper access control in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

  • CVE-2021-0159HigMay 12, 2022
    risk 0.51cvss 7.8epss 0.00

    Improper input validation in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

  • CVE-2022-32231HigFeb 16, 2023
    risk 0.49cvss 7.5epss 0.00

    Improper initialization in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-30539HigFeb 16, 2023
    risk 0.49cvss 7.5epss 0.00

    Use after free in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-26837HigFeb 16, 2023
    risk 0.49cvss 7.5epss 0.00

    Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-21216HigFeb 16, 2023
    risk 0.49cvss 7.5epss 0.01

    Insufficient granularity of access control in out-of-band management in some Intel(R) Atom and Intel Xeon Scalable Processors may allow a privileged user to potentially enable escalation of privilege via adjacent network access.

  • CVE-2022-41804HigAug 11, 2023
    risk 0.47cvss 7.2epss 0.00

    Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-33196HigFeb 16, 2023
    risk 0.47cvss 7.2epss 0.00

    Incorrect default permissions in some memory controller configurations for some Intel(R) Xeon(R) Processors when using Intel(R) Software Guard Extensions which may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2021-33124MedMay 12, 2022
    risk 0.44cvss 6.7epss 0.00

    Out-of-bounds write in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

  • CVE-2021-0186MedNov 17, 2021
    risk 0.44cvss 6.7epss 0.00

    Improper input validation in the Intel(R) SGX SDK applications compiled for SGX2 enabled processors may allow a privileged user to potentially escalation of privilege via local access.

  • CVE-2022-40982MedAug 11, 2023
    risk 0.43cvss 6.5epss 0.03

    Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2022-33972MedFeb 16, 2023
    risk 0.40cvss 6.1epss 0.00

    Incorrect calculation in microcode keying mechanism for some 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2023-23908MedAug 11, 2023
    risk 0.39cvss 6.0epss 0.00

    Improper access control in some 3rd Generation Intel(R) Xeon(R) Scalable processors may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2022-38090MedFeb 16, 2023
    risk 0.39cvss 6.0epss 0.00

    Improper isolation of shared resources in some Intel(R) Processors when using Intel(R) Software Guard Extensions may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2022-21151MedMay 12, 2022
    risk 0.36cvss 5.5epss 0.00

    Processor optimization removal or modification of security-critical code for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2022-43505MedAug 11, 2023
    risk 0.27cvss 4.1epss 0.00

    Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of service via local access.

  • CVE-2021-0187LowFeb 16, 2023
    risk 0.21cvss 3.2epss 0.00

    Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.