CVE-2021-33078

low-risk
Published 2022-05-12

Race condition within a thread in firmware for some Intel(R) Optane(TM) SSD and Intel(R) SSD DC Products may allow a privileged user to potentially enable denial of service via local access.

Do I need to act?

-
0.03% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
4
CVSS 4.7/10 Medium
LOCAL / HIGH complexity

Affected Products (7)

Optane Ssd Dc P4800X Firmware
Optane Ssd Dc P4801X Firmware
Optane Ssd P5800X Firmware
Optane Memory H20 With Solid State Storage Firmware
Optane Memory H10 With Solid State Storage Firmware
Optane Ssd 905P Firmware
Optane Ssd 900P Firmware

Affected Vendors

26
/ 100
low-risk
Severity 12/34 · Low
Exploitability 0/34 · Minimal
Exposure 14/34 · Moderate