Improper Buffer Restriction in Intel NUC Laptop Kits
CVE-2022-28858

7.8HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
18 August 2022

Summary

An improper buffer restriction vulnerability exists in the firmware for certain Intel NUC Laptop Kits prior to version BC0076. This flaw may allow a privileged user to exploit local access to escalate their privileges within the system. Such vulnerabilities can lead to significant security issues, enabling unauthorized actions that could compromise system integrity.

Affected Version(s)

Intel(R) NUC Laptop Kits before version BC0076

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.