CVE-2021-0121
Published on: 11/17/2021 12:00:00 AM UTC
Last Modified on: 08/01/2022 04:14:00 PM UTC
Certain versions of Iris Xe Max Dedicated Graphics from Ibm contain the following vulnerability:
Improper access control in the installer for some Intel(R) Iris(R) Xe MAX Dedicated Graphics Drivers for Windows 10 before version 27.20.100.9466 may allow authenticated user to potentially enable escalation of privilege via local access.
- CVE-2021-0121 has been assigned by
[email protected] to track the vulnerability - currently rated as HIGH severity.
CVSS3 Score: 7.8 - HIGH
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
LOCAL | LOW | LOW | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | HIGH | HIGH | HIGH |
CVSS2 Score: 4.6 - MEDIUM
Access Vector ⓘ |
Access Complexity |
Authentication |
---|---|---|
LOCAL | LOW | NONE |
Confidentiality Impact |
Integrity Impact |
Availability Impact |
PARTIAL | PARTIAL | PARTIAL |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
INTEL-SA-00566 | www.intel.com text/html |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Ibm | Iris Xe Max Dedicated Graphics | All | All | All | All |
Application | Intel | Iris Xe Max Dedicated Graphics | All | All | All | All |
Operating System | Microsoft | Windows 10 | - | All | All | All |
- cpe:2.3:a:ibm:iris_xe_max_dedicated_graphics:*:*:*:*:*:*:*:*:
- cpe:2.3:a:intel:iris_xe_max_dedicated_graphics:*:*:*:*:*:*:*:*:
- cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2021-0121 : Improper access control in the installer for some Intel R Iris R Xe MAX Dedicated Graphics Driver… twitter.com/i/web/status/1… | 2021-11-17 19:08:43 |