VDB
CVE-2022-37327
CVE-2022-37327
PUBLISHED
In Intel BIOS, Intel Firmware und Intel Driver and Support Assistant existieren mehrere Schwachstellen. Die Fehler bestehen unter anderem aufgrund unsachgemäßer Eingabevalidierungen, unsachgemäßer Zugriffskontrollen und unsachgemäßer Initialisierungen. Ein lokaler Angreifer kann diese Schwachstellen ausnutzen, um seine Privilegien zu erweitern, vertrauliche Informationen offenzulegen und einen Denial-of-Service-Zustand zu verursachen. Die erfolgreiche Ausnutzung einiger dieser Schwachstellen erfordert erhöhte Rechte.
EPSS 0.05% · 15.7th percentile
Risk Scores
EPSS Score
0.05%
15.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Intel Driver and Support Assistant NUC Laptop Element Software | |
| Intel | Intel Firmware HDMI Update Tool for NUC | |
| Intel | Intel BIOS | |
| Intel | Intel Driver and Support Assistant NUC Pro Software Suite | |
| Intel | Intel BIOS Update Software | |
| Intel | Intel Driver and Support Assistant NUC Software Studio Service Installer |
Timeline
- May 9, 2023 CVE Published
- May 11, 2023 EPSS Score
- Jun 17, 2023 EPSS Score
- Jul 23, 2023 EPSS Score
- Aug 29, 2023 EPSS Score
- Oct 5, 2023 EPSS Score
- Nov 10, 2023 EPSS Score
- Dec 17, 2023 EPSS Score
- Jan 23, 2024 EPSS Score
- Feb 28, 2024 EPSS Score
- Apr 5, 2024 EPSS Score
- May 12, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-1173.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-1173 advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00854.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00834.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00802.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00780.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00833.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00777.html advisory