Improper Input Validation in Intel SPS Firmware
CVE-2022-29466

5.5MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
11 November 2022

Summary

The firmware for Intel's Server Platform Services (SPS) prior to version SPS_E3_04.01.04.700.0 is susceptible to improper input validation. This vulnerability may allow an authenticated user to exploit the system to cause a denial of service via local access. Mitigation strategies should be employed to safeguard against potential disruptions.

Affected Version(s)

Intel(R) SPS before version SPS_E3_04.01.04.700.0

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.