8.2
CWE
20
Advisory Published
Updated

CVE-2022-33945: Input Validation

First published: Tue Nov 14 2023(Updated: )

Improper input validation in some Intel(R) Server board and Intel(R) Server System BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

Credit: secure@intel.com

Affected SoftwareAffected VersionHow to fix
All of
Intel Server board m70klp2sb firmware
Intel Server Board m70klp2sb firmware<01.04.0022
All of
Intel Server System m70klp4s2uhh firmware
Intel Server System m70klp4s2uhh firmware<01.04.0022
All of
Intel Server Board M20NTP2SB Firmware
Intel Server Board M20NTP2SB<0022.d02
All of
Intel Server System m20ntp1ur304 firmware
Intel Server System<0022.d02
All of
Intel Server Board M10JNP2SB Firmware
Intel Server Board M10JNP2SB<7.219
All of
Intel S2600BPBR Firmware
Intel Server Board S2600BPB Firmware<02.01.0015
All of
Intel Server Board S2600BPS Firmware
Intel Server Board S2600BPS Firmware<02.01.0015
All of
Intel Server Board S2600BPSR Firmware
Intel Server Board S2600BP Firmware<02.01.0015
All of
Intel S2600BPQR Firmware<02.01.0015
Intel S2600BPQR Firmware
All of
Intel Server Board S2600BPB Firmware<02.01.0015
Intel Server Board S2600BPB Firmware
All of
Intel Server Board S2600BPQ<02.01.0015
Intel Server Board S2600BPQ
All of
Intel Compute Module HNS2600<02.01.0015
Intel Compute Module HNS2600BPBLCR Firmware
All of
Intel Compute Module HNS2600<02.01.0015
Intel Compute Module hns2600bpblc
All of
Intel Compute Module HNS2600BPBL-C24R Firmware<02.01.0015
Intel Compute Module HNS2600BPBL-C24R Firmware
All of
Intel HNS2600BPS Firmware<02.01.0015
Intel Compute Module HNS2600BPS
All of
Intel Compute Module HNS2600BPS24 Firmware<02.01.0015
Intel Compute Module HNS2600BPS24 Firmware
All of
Intel Compute Module HNS2600BPBR Firmware<02.01.0015
Intel Compute Module HNS2600
All of
Intel Compute Module HNS2600BPQR Firmware<02.01.0015
Intel Compute Module HNS2600
All of
Intel Compute Module HNS2600BPSR Firmware<02.01.0015
Intel Compute Module hns2600bpsr
All of
Intel Compute Module HNS2600BPS24R Firmware<02.01.0015
Intel Compute Module HNS2600BPS24R Firmware
All of
Intel Compute Module HNS2600BPQ24R Firmware<02.01.0015
Intel compute module hns2600bpq24r firmware
All of
Intel Compute Module HNS2600BPB24R Firmware<02.01.0015
Intel Compute Module HNS2600BPB24 Firmware
All of
Intel Compute Module hns2600bp firmware<02.01.0015
Intel Compute Module hns2600bpb firmware
All of
Intel Compute Module HNS2600BPBL-C24 Firmware<02.01.0015
Intel compute module hns2600bpblc24 firmware
All of
Intel Compute Module HNS2600BPQR Firmware<02.01.0015
Intel Compute Module hns2600bpq
All of
Intel HNS2600BPQ24 Firmware<02.01.0015
Intel Compute Module HNS2600BPQ24 Firmware
All of
Intel Compute Module HNS2600BPBRCT Firmware<02.01.0015
Intel Compute Module HNS2600BPBRCT
All of
Intel Server System VRN2224BPAF6 Firmware<02.01.0015
Intel Server System VRN2224BPAF6 Firmware
All of
Intel Server System VRN2224BPHY6<02.01.0015
Intel Server system vrn2224bphy6 firmware
All of
Intel Server System mcb2208wfaf5 firmware<02.01.0015
Intel Server System mcb2208wfaf5 firmware
All of
Intel Server System ZSB2224BPAF2 Firmware<02.01.0015
Intel Server System ZSB2224BPAF2 Firmware
All of
Intel Server System ZSB2224BPHY1 Firmware<02.01.0015
Intel Server System ZSB2224BPHY1 Firmware
All of
Intel Server System ZSB2224BPAF1 Firmware<02.01.0015
Intel Server system zsb2224bpaf1 firmware

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2022-33945?

    CVE-2022-33945 has been classified with a severity rating that indicates it allows a privileged user to potentially escalate privileges.

  • How do I fix CVE-2022-33945?

    To remediate CVE-2022-33945, update the affected Intel Server board or System BIOS firmware to the latest version provided by Intel.

  • Which Intel products are affected by CVE-2022-33945?

    CVE-2022-33945 affects several Intel Server boards and systems, specifically those with BIOS firmware versions prior to the specified secure versions.

  • What type of vulnerability is CVE-2022-33945?

    CVE-2022-33945 is categorized as an improper input validation vulnerability.

  • Who should be concerned about CVE-2022-33945?

    Administrators and users of Intel Server products should be concerned about CVE-2022-33945 due to its potential for privilege escalation.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203