CVE-2022-34345: Input Validation
Improper input validation in the firmware for some Intel(R) NUC Laptop Kits before version BC0076 may allow a privileged user to potentially enable escalation of privilege via physical access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-34345?
CVE-2022-34345 is a vulnerability in the firmware for Intel(R) NUC Laptop Kits before version BC0076 that allows a privileged user to potentially enable escalation of privilege via physical access.
How does CVE-2022-34345 affect Intel Lapbc510 Firmware?
CVE-2022-34345 affects Intel Lapbc510 Firmware versions up to (but not including) BC0076 and potentially allows a privileged user to enable escalation of privilege via physical access.
Is Intel Lapbc510 vulnerable to CVE-2022-34345?
No, Intel Lapbc510 is not vulnerable to CVE-2022-34345.
How does CVE-2022-34345 affect Intel Lapbc710 Firmware?
CVE-2022-34345 affects Intel Lapbc710 Firmware versions up to (but not including) BC0076 and potentially allows a privileged user to enable escalation of privilege via physical access.
Is Intel Lapbc710 vulnerable to CVE-2022-34345?
No, Intel Lapbc710 is not vulnerable to CVE-2022-34345.
What is the severity of CVE-2022-34345?
The severity of CVE-2022-34345 is medium with a CVSS score of 6.2.
How can I fix CVE-2022-34345 in Intel NUC Laptop Kits?
To fix CVE-2022-34345, users of Intel NUC Laptop Kits should update the firmware to version BC0076 or later as recommended by Intel.