First published: Tue Nov 14 2023(Updated: )
Improper input validation in some Intel(R) Server System M70KLP Family BIOS firmware before version 01.04.0029 may allow a privileged user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Intel Server Board M70klp2sb Firmware | <01.04.0022 | |
Intel Server Board M70klp2sb | ||
All of | ||
Intel Server System M70klp4s2uhh Firmware | <01.04.0022 | |
Intel Server System M70klp4s2uhh |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-24379 is a vulnerability in some Intel Server System M70KLP Family BIOS firmware before version 01.04.0029 that may allow a privileged user to potentially enable escalation of privilege via local access.
Intel Server Board M70klp2sb Firmware versions up to 01.04.0022 are affected by CVE-2022-24379.
No, Intel Server Board M70klp2sb is not vulnerable to CVE-2022-24379.
Intel Server System M70klp4s2uhh Firmware versions up to 01.04.0022 are affected by CVE-2022-24379.
No, Intel Server System M70klp4s2uhh is not vulnerable to CVE-2022-24379.
CVE-2022-24379 has a severity rating of 7.5 out of 10 (high).
To fix CVE-2022-24379, update your Intel Server System M70KLP Family BIOS firmware to version 01.04.0029 or later.
You can find more information about CVE-2022-24379 on the Intel Security Center Advisory page at https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00719.html.
The CWE category of CVE-2022-24379 is CWE-20 (Improper Input Validation).