CVE-2022-34152: Input Validation
Published Nov 11, 2022
·Updated
Improper input validation in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC Kits before version TY0070 may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
8 affected components
All of the following
Intel Nuc Board De3815tybe Firmware<ty0070
Intel Nuc Board De3815tybe
All of the following
Intel Nuc Kit De3815tykhe Firmware<ty0070
Intel Nuc Kit De3815tykhe
Intel Nuc Board De3815tybe Firmware<ty0070
Intel Nuc Board De3815tybe
Intel Nuc Kit De3815tykhe Firmware<ty0070
Intel Nuc Kit De3815tykhe
Remediation
Event History
Nov 11, 2022
CVE Published
via MITRE·03:48 PM
Data Sourced
via MITRE·03:48 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-34152?
CVE-2022-34152 is a vulnerability in the BIOS firmware for some Intel(R) NUC Boards and Intel(R) NUC Kits before version TY0070.
2
What is the severity of CVE-2022-34152?
The severity of CVE-2022-34152 is high, with a severity value of 6.7.
3
How can a privileged user exploit CVE-2022-34152?
A privileged user can potentially enable escalation of privilege via local access.
4
Which software versions are affected by CVE-2022-34152?
The Intel(R) NUC Boards and Intel(R) NUC Kits before version TY0070 are affected by CVE-2022-34152.
5
How can I fix CVE-2022-34152?
To fix CVE-2022-34152, update the BIOS firmware to version TY0070 or above.