Unauthenticated Denial of Service Vulnerability in Intel(R) CSME Firmware
CVE-2024-21844

5.3MEDIUM

Key Information:

Vendor

Intel(R)

Vendor
CVE Published:
14 August 2024

What is CVE-2024-21844?

Integer overflow in firmware for some Intel(R) CSME may allow an unauthenticated user to potentially enable denial of service via adjacent access.

Affected Version(s)

Intel(R) CSME See references

References

CVSS V4

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.