VDB
CVE-2022-34848
CVE-2022-34848
PUBLISHED
In Intel BIOS, Intel Firmware und Intel Driver and Support Assistant existieren mehrere Schwachstellen. Die Fehler bestehen unter anderem aufgrund unsachgemäßer Eingabevalidierungen, unsachgemäßer Zugriffskontrollen und unsachgemäßer Initialisierungen. Ein lokaler Angreifer kann diese Schwachstellen ausnutzen, um seine Privilegien zu erweitern, vertrauliche Informationen offenzulegen und einen Denial-of-Service-Zustand zu verursachen. Die erfolgreiche Ausnutzung einiger dieser Schwachstellen erfordert erhöhte Rechte.
EPSS 0.07% · 20.8th percentile
Risk Scores
EPSS Score
0.07%
20.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Intel Firmware HDMI Update Tool for NUC | |
| Intel | Intel Driver and Support Assistant NUC Software Studio Service Installer | |
| Intel | Intel Driver and Support Assistant NUC Pro Software Suite | |
| Intel | Intel BIOS | |
| Intel | Intel BIOS Update Software | |
| Intel | Intel Driver and Support Assistant NUC Laptop Element Software |
Timeline
- May 9, 2023 CVE Published
- May 11, 2023 EPSS Score
- Jun 17, 2023 EPSS Score
- Jul 23, 2023 EPSS Score
- Aug 29, 2023 EPSS Score
- Oct 5, 2023 EPSS Score
- Nov 11, 2023 EPSS Score
- Dec 17, 2023 EPSS Score
- Jan 23, 2024 EPSS Score
- Feb 29, 2024 EPSS Score
- Apr 6, 2024 EPSS Score
- May 12, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-1173.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-1173 advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00854.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00834.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00802.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00780.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00833.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00777.html advisory