CVE-2021-33080

Exposure of sensitive system information due to uncleared debug information in firmware for some Intel(R) SSD DC, Intel(R) Optane(TM) SSD and Intel(R) Optane(TM) SSD DC Products may allow an unauthenticated user to potentially enable information disclosure or escalation of privilege via physical access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:intel:optane_ssd_dc_p4800x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_ssd_dc_p4800x:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:intel:optane_ssd_dc_p4801x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_ssd_dc_p4801x:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:intel:optane_ssd_p5800x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_ssd_p5800x:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:intel:optane_memory_h20_with_solid_state_storage_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_memory_h20_with_solid_state_storage:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:intel:optane_memory_h10_with_solid_state_storage_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_memory_h10_with_solid_state_storage:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:intel:optane_ssd_905p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_ssd_905p:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:intel:optane_ssd_900p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_ssd_900p:-:*:*:*:*:*:*:*

History

07 Oct 2022, 13:58

Type Values Removed Values Added
References
  • (MISC) https://www.solidigm.com/content/dam/newco-aem-site/master/site/support/Solidigm%20SA-000563%20rev1.1.pdf - Broken Link

12 Jul 2022, 17:42

Type Values Removed Values Added
CWE NVD-CWE-noinfo CWE-212

23 May 2022, 16:21

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : 4.6
v3 : 6.8
CPE cpe:2.3:h:intel:optane_memory_h10_with_solid_state_storage:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_ssd_p5800x:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_ssd_dc_p4801x:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:optane_ssd_900p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_ssd_900p:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_ssd_dc_p4800x:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:optane_ssd_dc_p4800x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:optane_memory_h10_with_solid_state_storage_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:optane_ssd_dc_p4801x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_ssd_905p:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:optane_ssd_p5800x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:optane_memory_h20_with_solid_state_storage:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:optane_memory_h20_with_solid_state_storage_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:optane_ssd_905p_firmware:*:*:*:*:*:*:*:*
References (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00563.html - (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00563.html - Mitigation, Vendor Advisory

12 May 2022, 17:24

Type Values Removed Values Added
New CVE

Information

Published : 2022-05-12 17:15

Updated : 2024-02-04 22:29


NVD link : CVE-2021-33080

Mitre link : CVE-2021-33080

CVE.ORG link : CVE-2021-33080


JSON object : View

Products Affected

intel

  • optane_memory_h10_with_solid_state_storage
  • optane_ssd_905p_firmware
  • optane_ssd_dc_p4800x
  • optane_ssd_dc_p4801x_firmware
  • optane_ssd_dc_p4800x_firmware
  • optane_memory_h20_with_solid_state_storage_firmware
  • optane_ssd_905p
  • optane_memory_h10_with_solid_state_storage_firmware
  • optane_ssd_900p
  • optane_ssd_900p_firmware
  • optane_ssd_p5800x
  • optane_memory_h20_with_solid_state_storage
  • optane_ssd_dc_p4801x
  • optane_ssd_p5800x_firmware
CWE
CWE-212

Improper Removal of Sensitive Information Before Storage or Transfer