VDB
CVE-2022-32578
CVE-2022-32578
PUBLISHED
In Intel BIOS, Intel Firmware und Intel Driver and Support Assistant existieren mehrere Schwachstellen. Die Fehler bestehen unter anderem aufgrund unsachgemäßer Eingabevalidierungen, unsachgemäßer Zugriffskontrollen und unsachgemäßer Initialisierungen. Ein lokaler Angreifer kann diese Schwachstellen ausnutzen, um seine Privilegien zu erweitern, vertrauliche Informationen offenzulegen und einen Denial-of-Service-Zustand zu verursachen. Die erfolgreiche Ausnutzung einiger dieser Schwachstellen erfordert erhöhte Rechte.
EPSS 0.05% · 14.4th percentile
Risk Scores
EPSS Score
0.05%
14.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Intel Driver and Support Assistant NUC Pro Software Suite | |
| Intel | Intel Driver and Support Assistant NUC Software Studio Service Installer | |
| Intel | Intel Firmware HDMI Update Tool for NUC | |
| Intel | Intel BIOS Update Software | |
| Intel | Intel Driver and Support Assistant NUC Laptop Element Software | |
| Intel | Intel BIOS |
Timeline
- May 9, 2023 CVE Published
- May 11, 2023 EPSS Score
- Jun 17, 2023 EPSS Score
- Jul 23, 2023 EPSS Score
- Aug 29, 2023 EPSS Score
- Oct 5, 2023 EPSS Score
- Nov 10, 2023 EPSS Score
- Dec 17, 2023 EPSS Score
- Jan 23, 2024 EPSS Score
- Feb 28, 2024 EPSS Score
- Apr 5, 2024 EPSS Score
- May 12, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-1173.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-1173 advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00854.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00834.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00802.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00780.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00833.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00777.html advisory