CVE-2022-29262: High severity intel server board m70klp2sb firmware vulnerability
Published Nov 14, 2023
·Updated
Improper buffer restrictions in some Intel(R) Server Board BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
66 affected components
Intel Server Board M70klp2sb Firmware<01.04.0022
Intel Server Board M70klp2sb
Intel Server System M70klp4s2uhh Firmware<01.04.0022
Intel Server System M70klp4s2uhh
Intel Server Board M20ntp2sb Firmware<0022.d02
Intel Server Board M20ntp2sb
Intel Server System M20ntp1ur304 Firmware<0022.d02
Intel Server System M20ntp1ur304
Intel Server Board M10jnp2sb Firmware<7.219
Intel Server Board M10JNP2SB
Intel Server Board S2600bpbr Firmware<02.01.0015
Intel Server Board S2600bpbr
Intel Server Board S2600bps Firmware<02.01.0015
Intel Server Board S2600bps
Intel Server Board S2600bpsr Firmware<02.01.0015
Intel Server Board S2600bpsr
Intel Server Board S2600bpqr Firmware<02.01.0015
Intel Server Board S2600bpqr
Intel Server Board S2600bpb Firmware<02.01.0015
Intel Server Board S2600bpb
Intel Server Board S2600bpq Firmware<02.01.0015
Intel Server Board S2600bpq
Intel Compute Module Hns2600bpblcr Firmware<02.01.0015
Intel Compute Module Hns2600bpblcr
Intel Compute Module Hns2600bpblc Firmware<02.01.0015
Intel Compute Module Hns2600bpblc
Intel Compute Module Hns2600bpblc24r Firmware<02.01.0015
Intel Compute Module Hns2600bpblc24r
Intel Compute Module Hns2600bps Firmware<02.01.0015
Intel Compute Module Hns2600bps
Intel Compute Module Hns2600bps24 Firmware<02.01.0015
Intel Compute Module Hns2600bps24
Intel Compute Module Hns2600bpbr Firmware<02.01.0015
Intel Compute Module Hns2600bpbr
Intel Compute Module Hns2600bpqr Firmware<02.01.0015
Intel Compute Module Hns2600bpqr
Intel Compute Module Hns2600bpsr Firmware<02.01.0015
Intel Compute Module Hns2600bpsr
Intel Compute Module Hns2600bps24r Firmware<02.01.0015
Intel Compute Module Hns2600bps24r
Intel Compute Module Hns2600bpq24r Firmware<02.01.0015
Intel Compute Module Hns2600bpq24r
Intel Compute Module Hns2600bpb24 Firmware<02.01.0015
Intel Compute Module Hns2600bpb24
Intel Compute Module Hns2600bpb Firmware<02.01.0015
Intel Compute Module Hns2600bpb
Intel Compute Module Hns2600bpblc24 Firmware<02.01.0015
Intel Compute Module Hns2600bpblc24
Intel Compute Module Hns2600bpq Firmware<02.01.0015
Intel Compute Module Hns2600bpq
Intel Compute Module Hns2600bpq24 Firmware<02.01.0015
Intel Compute Module Hns2600bpq24
Intel Compute Module Liquid-cooled Hns2600bpbrct Firmware<02.01.0015
Intel Compute Module Liquid-cooled Hns2600bpbrct
Intel Server System Vrn2224bpaf6 Firmware<02.01.0015
Intel Server System Vrn2224bpaf6
Intel Server System Vrn2224bphy6 Firmware<02.01.0015
Intel Server System Vrn2224bphy6
Intel Server System Mcb2208wfaf5 Firmware<02.01.0015
Intel Server System Mcb2208wfaf5
Intel Server System Zsb2224bpaf2 Firmware<02.01.0015
Intel Server System Zsb2224bpaf2
Intel Server System Zsb2224bphy1 Firmware<02.01.0015
Intel Server System Zsb2224bphy1
Intel Server System Zsb2224bpaf1 Firmware<02.01.0015
Intel Server System Zsb2224bpaf1
Remediation
Event History
Nov 14, 2023
CVE Published
07:05 PM
Data Sourced
07:05 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-29262?
CVE-2022-29262 has a medium severity rating, indicating potential for escalated privileges under local access.
2
How do I fix CVE-2022-29262?
To resolve CVE-2022-29262, update the affected Intel Server Board BIOS firmware to a version above 01.04.0022.
3
What type of vulnerability is CVE-2022-29262?
CVE-2022-29262 is classified as an improper buffer restriction vulnerability.
4
Who is affected by CVE-2022-29262?
The vulnerability affects users with Intel Server Boards and Systems running specific BIOS firmware versions.
5
Can CVE-2022-29262 be exploited remotely?
No, CVE-2022-29262 requires localized access to exploit the privilege escalation vulnerability.