CVE-2018-12176: Input Validation
Improper input validation in firmware for Intel NUC Kits may allow a privileged user to potentially execute arbitrary code resulting in information disclosure, escalation of privilege and/or denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-12176?
CVE-2018-12176 has a medium severity level due to the potential for information disclosure and privilege escalation.
How do I fix CVE-2018-12176?
To fix CVE-2018-12176, update the affected Intel NUC Kit firmware to the latest version provided by Intel.
Who is affected by CVE-2018-12176?
CVE-2018-12176 affects users of certain Intel NUC kits and compute cards with vulnerable firmware.
What types of attacks can CVE-2018-12176 enable?
CVE-2018-12176 may allow attackers to execute arbitrary code, escalate privileges, or cause denial of service via local access.
Is CVE-2018-12176 a remote or local vulnerability?
CVE-2018-12176 is a local vulnerability that requires physical access to the affected device.