VYPR

Xeon Bronze 3106

by Intel

CVEs (17)

  • CVE-2021-0099HigFeb 9, 2022
    risk 0.51cvss 7.8epss 0.00

    Insufficient control flow management in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable an escalation of privilege via local access.

  • CVE-2018-3652HigJul 10, 2018
    risk 0.49cvss 7.6epss 0.00

    Existing UEFI setting restrictions for DCI (Direct Connect Interface) in 5th and 6th generation Intel Xeon Processor E3 Family, Intel Xeon Scalable processors, and Intel Xeon Processor D Family allows a limited physical presence attacker to potentially access platform secrets…

  • CVE-2017-5753MedJan 4, 2018
    risk 0.47cvss 5.6epss 0.93

    Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

  • CVE-2017-5715MedJan 4, 2018
    risk 0.45cvss 5.6epss 0.74

    Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

  • CVE-2021-0115MedFeb 9, 2022
    risk 0.44cvss 6.7epss 0.00

    Buffer overflow in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2021-0111MedFeb 9, 2022
    risk 0.44cvss 6.7epss 0.00

    NULL pointer dereference in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.

  • CVE-2021-0107MedFeb 9, 2022
    risk 0.44cvss 6.7epss 0.00

    Unchecked return value in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2021-0103MedFeb 9, 2022
    risk 0.44cvss 6.7epss 0.00

    Insufficient control flow management in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.

  • CVE-2021-0114MedAug 16, 2021
    risk 0.44cvss 6.7epss 0.00

    Unchecked return value in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.

  • CVE-2021-0144MedJul 14, 2021
    risk 0.44cvss 6.7epss 0.00

    Insecure default variable initialization for the Intel BSSA DFT feature may allow a privileged user to potentially enable an escalation of privilege via local access.

  • CVE-2017-5754MedJan 4, 2018
    risk 0.43cvss 5.6epss 0.84

    Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis of the data cache.

  • CVE-2018-3693MedJul 10, 2018
    risk 0.37cvss 5.6epss 0.08

    Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a speculative buffer overflow and side-channel analysis.

  • CVE-2021-0127MedFeb 9, 2022
    risk 0.36cvss 5.5epss 0.00

    Insufficient control flow management in some Intel(R) Processors may allow an authenticated user to potentially enable a denial of service via local access.

  • CVE-2020-0551MedMar 12, 2020
    risk 0.36cvss 5.6epss 0.01

    Load value injection in some Intel(R) Processors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. The list of affected products is provided in intel-sa-00334:…

  • CVE-2018-9056MedMar 27, 2018
    risk 0.36cvss 5.6epss 0.01

    Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local user access via a side-channel attack on the directional branch predictor, as demonstrated by a pattern history table (PHT), aka BranchScope.

  • CVE-2021-0093MedFeb 9, 2022
    risk 0.29cvss 4.4epss 0.00

    Incorrect default permissions in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.

  • CVE-2021-0092MedFeb 9, 2022
    risk 0.29cvss 4.4epss 0.00

    Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.