CVE-2024-21823

Hardware logic with insecure de-synchronization in Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation Xeon(R) processors may allow an authorized user to potentially enable escalation of privilege local access
Configurations

No configuration.

History

21 Nov 2024, 08:55

Type Values Removed Values Added
References () http://www.openwall.com/lists/oss-security/2024/05/15/1 - () http://www.openwall.com/lists/oss-security/2024/05/15/1 -
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DW2MIOIMOFUSNLHLRYX23AFR36BMKD65/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DW2MIOIMOFUSNLHLRYX23AFR36BMKD65/ -
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OTB4HWU2PTVW5NEYHHLOCXDKG3PYA534/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OTB4HWU2PTVW5NEYHHLOCXDKG3PYA534/ -
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01084.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01084.html -

14 Aug 2024, 21:15

Type Values Removed Values Added
Summary (en) Hardware logic with insecure de-synchronization in Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation Xeon(R) processors may allow an authorized user to potentially enable denial of service via local access. (en) Hardware logic with insecure de-synchronization in Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation Xeon(R) processors may allow an authorized user to potentially enable escalation of privilege local access
CVSS v2 : unknown
v3 : 6.4
v2 : unknown
v3 : 7.5

08 Aug 2024, 15:35

Type Values Removed Values Added
CWE CWE-400

10 Jun 2024, 18:15

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2024/05/15/1 -
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DW2MIOIMOFUSNLHLRYX23AFR36BMKD65/ -

10 Jun 2024, 16:15

Type Values Removed Values Added
Summary
  • (es) La lógica de hardware con desincronización insegura en Intel(R) DSA e Intel(R) IAA para algunos procesadores Intel(R) Xeon(R) de cuarta o quinta generación puede permitir que un usuario autorizado habilite potencialmente la denegación de servicio a través del acceso local.
References
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OTB4HWU2PTVW5NEYHHLOCXDKG3PYA534/ -

16 May 2024, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-16 21:16

Updated : 2024-11-21 08:55


NVD link : CVE-2024-21823

Mitre link : CVE-2024-21823

CVE.ORG link : CVE-2024-21823


JSON object : View

Products Affected

No product.

CWE
CWE-1264

Hardware Logic with Insecure De-Synchronization between Control and Data Channels

CWE-400

Uncontrolled Resource Consumption