Potential Escalation of Privilege Vulnerability in Intel UEFI Firmware
CVE-2023-22351
6.1MEDIUM
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 16 September 2024
Summary
An out-of-bounds write vulnerability exists in the UEFI firmware for certain Intel processors. This flaw may enable a privileged user to execute unauthorized actions through local access, leading to potential escalation of privileges. Users of affected Intel products should apply available mitigations and stay informed about updates to ensure system security.
Affected Version(s)
UEFI firmware for some Intel(R) Processors See references
References
CVSS V3.1
Score:
6.1
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved