CVE-2022-28858: Buffer Overflow
Published Aug 18, 2022
·Updated
Improper buffer restriction in the firmware for some Intel(R) NUC Laptop Kits before version BC0076 may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
8 affected components
All of the following
Intel LAPBC510<bc0076
Intel LAPBC510 Firmware
All of the following
Intel LAPBC710<bc0076
Intel LAPBC710 Firmware
Intel LAPBC510<bc0076
Intel LAPBC510 Firmware
Intel LAPBC710<bc0076
Intel LAPBC710 Firmware
Remediation
Event History
Aug 18, 2022
CVE Published
via MITRE·08:03 PM
Data Sourced
via MITRE·08:03 PM
DescriptionWeakness
Data Sourced
via NVD·09:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-28858?
CVE-2022-28858 is categorized as a high severity vulnerability allowing potential privilege escalation.
2
How do I fix CVE-2022-28858?
To fix CVE-2022-28858, update the firmware to version BC0076 or later for affected Intel NUC Laptop Kits.
3
Who is affected by CVE-2022-28858?
CVE-2022-28858 affects users of Intel NUC Laptop Kits with firmware versions prior to BC0076.
4
What type of vulnerability is CVE-2022-28858?
CVE-2022-28858 is an improper buffer restriction vulnerability that can lead to privilege escalation.
5
Can CVE-2022-28858 be exploited remotely?
CVE-2022-28858 requires local access, meaning it cannot be exploited remotely.