First published: Tue Nov 14 2023(Updated: )
Improper access control in some Intel(R) Aptio* V UEFI Firmware Integrator Tools before version iDmiEdit-Linux-5.27.06.0017 may allow a privileged user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Aptio V Uefi Firmware Integrator Tools | =5.27.03.0003 | |
Microsoft Windows | ||
Intel Aptio V Uefi Firmware Integrator Tools | =5.27.06.0017 | |
Linux Linux kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36396 is a vulnerability that refers to improper access control in some Intel(R) Aptio* V UEFI Firmware Integrator Tools before version iDmiEdit-Linux-5.27.06.0017.
CVE-2022-36396 affects Intel Aptio V UEFI Firmware Integrator Tools versions 5.27.03.0003 and 5.27.06.0017, allowing a privileged user to potentially enable escalation of privilege via local access.
CVE-2022-36396 has a severity rating of 8.2 (high).
To fix CVE-2022-36396, update your Intel Aptio V UEFI Firmware Integrator Tools to version iDmiEdit-Linux-5.27.06.0017 or later.
You can find more information about CVE-2022-36396 at the following reference link: [Intel Security Advisory](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00908.html)