VendorsIntelxeon_silver_4208all versions
Vulnerabilities

Intel Xeon Silver 4208

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

38CVEs
CVE-2019-11137
Insufficient input validation in system firmware for Intel(R) Xeon(R) Scalable Processors, Intel(R) Xeon(R) Processors D Family, Intel(R) Xeon(R) Processors E5 v4 Family, Intel(R) Xeon(R) Processors E7 v4 Family and Intel(R) Atom(R) processor C Series may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
Published 2019-11-14 · Modified
8.2EPSS 0.004
CVE-2022-26343
Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2023-02-16 · Modified
8.2EPSS 0.002
CVE-2021-0133
Key exchange without entity authentication in the Intel(R) Security Library before version 3.3 may allow an authenticated user to potentially enable escalation of privilege via network access.
Published 2021-06-09 · Modified
8.1EPSS 0.009
CVE-2020-0590
Improper input validation in BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2020-11-12 · Modified
7.8EPSS 0.004
CVE-2020-8739
Use of potentially dangerous function in Intel BIOS platform sample code for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2020-11-12 · Modified
7.8EPSS 0.004
CVE-2021-0117
Pointer issues in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
Published 2022-02-09 · Modified
7.8EPSS 0.003
CVE-2021-0116
Out-of-bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
Published 2022-02-09 · Modified
7.8EPSS 0.003
CVE-2021-0156
Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable an escalation of privilege via local access.
Published 2022-02-09 · Modified
7.8EPSS 0.003
CVE-2021-0189
Use of out-of-range pointer offset in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
Published 2022-05-12 · Modified
7.8EPSS 0.003
CVE-2021-0159
Improper input validation in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
Published 2022-05-12 · Modified
7.8EPSS 0.003
CVE-2021-33123
Improper access control in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
Published 2022-05-12 · Modified
7.8EPSS 0.003
CVE-2021-0106
Incorrect default permissions in the Intel(R) Optane(TM) DC Persistent Memory for Windows software versions before 2.00.00.3842 or 1.00.00.3515 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2021-06-09 · Modified
7.8EPSS 0.002
CVE-2022-32231
Improper initialization in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2023-02-16 · Modified
7.5EPSS 0.002
CVE-2019-0152
Insufficient memory protection in System Management Mode (SMM) and Intel(R) TXT for certain Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2019-11-14 · Modified
7.2EPSS 0.004
CVE-2021-33124
Out-of-bounds write in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
Published 2022-05-12 · Modified
7.2EPSS 0.003
CVE-2020-8740
Out of bounds write in Intel BIOS platform sample code for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2020-11-12 · Modified
6.7EPSS 0.004
CVE-2020-8764
Improper access control in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2020-11-12 · Modified
6.7EPSS 0.004
CVE-2019-11136
Insufficient access control in system firmware for Intel(R) Xeon(R) Scalable Processors, 2nd Generation Intel(R) Xeon(R) Scalable Processors and Intel(R) Xeon(R) Processors D Family may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
Published 2019-11-14 · Modified
6.7EPSS 0.004
CVE-2020-0587
Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2020-11-12 · Modified
6.7EPSS 0.004
CVE-2020-0588
Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2020-11-12 · Modified
6.7EPSS 0.004
CVE-2020-0593
Improper buffer restrictions in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2020-11-12 · Modified
6.7EPSS 0.004
CVE-2020-0592
Out of bounds write in BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or denial of service via local access.
Published 2020-11-12 · Modified
6.7EPSS 0.003
CVE-2020-8738
Improper conditions check in Intel BIOS platform sample code for some Intel(R) Processors before may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2020-11-12 · Modified
6.7EPSS 0.003
CVE-2020-0591
Improper buffer restrictions in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2020-11-12 · Modified
6.7EPSS 0.003
CVE-2021-0118
Out-of-bounds read in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
Published 2022-02-09 · Modified
6.7EPSS 0.003
CVE-2021-0124
Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
Published 2022-02-09 · Modified
6.6EPSS 0.003
CVE-2021-0125
Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
Published 2022-02-09 · Modified
6.6EPSS 0.003
CVE-2021-0131
Use of cryptographically weak pseudo-random number generator (PRNG) in an API for the Intel(R) Security Library before version 3.3 may allow an authenticated user to potentially enable information disclosure via network access.
Published 2021-06-09 · Modified
6.5EPSS 0.008
CVE-2022-0001
Non-transparent sharing of branch predictor selectors between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
Published 2022-03-11 · Modified
6.5EPSS 0.005
CVE-2021-0119
Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
Published 2022-02-09 · Modified
6.2EPSS 0.003
CVE-2022-26373
Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
Published 2022-08-18 · Modified
5.5EPSS 0.004
CVE-2022-21131
Improper access control for some Intel(R) Xeon(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Published 2022-05-12 · Modified
5.5EPSS 0.003
CVE-2022-21136
Improper input validation for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable denial of service via local access.
Published 2022-05-12 · Modified
5.5EPSS 0.003
CVE-2019-14607
Improper conditions check in multiple Intel® Processors may allow an authenticated user to potentially enable partial escalation of privilege, denial of service and/or information disclosure via local access.
Published 2019-12-16 · Modified
5.3EPSS 0.003
CVE-2021-0134
Improper input validation in an API for the Intel(R) Security Library before version 3.3 may allow a privileged user to potentially enable denial of service via network access.
Published 2021-06-09 · Modified
4.9EPSS 0.008
CVE-2021-0132
Missing release of resource after effective lifetime in an API for the Intel(R) Security Library before version 3.3 may allow a privileged user to potentially enable denial of service via network access.
Published 2021-06-09 · Modified
4.9EPSS 0.008
CVE-2022-29493
Uncaught exception in webserver for the Integrated BMC in some Intel(R) platforms before versions 2.86, 2.09 and 2.78 may allow a privileged user to potentially enable denial of service via network access.
Published 2023-02-16 · Modified
4.9EPSS 0.005
CVE-2021-0083
Improper input validation in some Intel(R) Optane(TM) PMem versions before versions 1.2.0.5446 or 2.2.0.1547 may allow a privileged user to potentially enable denial of service via local access.
Published 2021-08-11 · Modified
4.4EPSS 0.002