CVE-2024-21823CWE-1264

Hardware logic with insecure de-synchronization in Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation Xeon(R) processors may allow an…

High · published May 16, 2024

CVSS v3.1
7.5
EPSS
0%
Percentile
9.3
In the wild
Unconfirmed
What it is

Hardware logic with insecure de-synchronization in Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation Xeon(R) processors may allow an authorized user to potentially enable escalation of privilege local access

The record
Technical detail
CVSS v3.1
7.5 · HIGH
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00196 · 9.3th percentile
Weakness
CWE-1264 · Hardware Logic with Insecure De-Synchronization between Control and Data Channels
Published
2024-05-16T20:46Z
EPSS history
Timeline
  • 16 MAY 20:46Z
    Hardware logic with insecure de-synchronization in Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation Xeon(R) processors may allow an…
    cvelistv5