Intel 4th Generation Intel Xeon Scalable processor
cpe:2.3:h:intel:xeon_platinum_processors:*:*:*:*:*:*:*
- >= 4th Generation Intel® Xeon® Scalable processor, < 5th Generation Intel® Xeon® Scalable processor
A vulnerability allowing information disclosure has been identified in the UEFI firmware of certain Intel platforms, specifically in Ring 0: Bare Metal OS. This issue arises from improper initialization and may be exploited by a system software adversary with privileged user access. The vulnerability requires a high complexity attack and could lead to data exposure via local access, without the need for special internal knowledge or user interaction. While the vulnerability itself is assessed to have a high impact on confidentiality, it does not affect integrity or availability. However, the potential exploitation could result in no confidentiality, integrity, or availability impacts on the system.
Exploitation of this vulnerability could lead to unauthorized information disclosure.
Users of 4th and 5th Generation Intel Xeon Scalable processors are advised to update to the latest version provided by their system manufacturer that addresses this issue.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.