Race Condition Vulnerability in Intel System Security Report Software
CVE-2023-49603

8.7HIGH

Key Information:

Summary

A race condition vulnerability exists in Intel System Security Report and System Resources Defense firmware, which may allow a privileged user to exploit local access for escalating their privileges. This flaw could potentially result in unauthorized access to sensitive system functionalities and data, emphasizing the need for vigilance in firmware security management.

Affected Version(s)

Intel(R) System Security Report and System Resources Defense firmware See references

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.