Race Condition Vulnerability in Intel System Security Report Firmware
CVE-2024-36262
8.6HIGH
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 12 February 2025
Summary
A race condition exists in the Intel System Security Report and System Resources Defense firmware that may allow a privileged user to exploit local access vulnerabilities. This flaw can potentially enable an escalation of privilege, posing a risk to the integrity of affected systems. Users are advised to assess their systems and apply any available patches to mitigate the risk associated with this vulnerability.
Affected Version(s)
Intel(R) System Security Report and System Resources Defense firmware See references
References
CVSS V4
Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved