Improper Initialization Vulnerability in Intel NUC Laptop Kits
CVE-2022-32579

7.2HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
18 August 2022

Summary

The vulnerability arises from improper initialization in the firmware for specific Intel(R) NUC Laptop Kits. This flaw could potentially allow a privileged user with physical access to execute actions that escalate their privileges, posing significant security risks to affected systems. Users are advised to review their firmware versions and update to the latest release to mitigate potential threats.

Affected Version(s)

Intel(R) NUC Laptop Kits before version BC0076

References

CVSS V3.1

Score:
7.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.