Input validation error in Intel products - CVE-2021-0051
Published: June 14, 2021
Vulnerability identifier: #VU54101
CSH Severity: Low
CVSS v4: 6.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-0051
CWE-ID: CWE-20
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input. A local administrator can pass specially crafted input to the application and perform a denial of service (DoS) attack.
Affected software
Intel C620A Series Chipset
Intel Atom Processor P5000 Series
Intel Server Platform Services Firmware
Intel Atom Processor P5000 Series
Intel Server Platform Services Firmware
How to mitigate CVE-2021-0051
Install updates from vendor's website.
Intel Server Platform Services Firmware - addressed in versions SPS_SoC-A_05.00.03.098.0, SPS_E5_04.04.03.228.0, SPS_E5_04.04.04.023.0