First published: Fri Nov 11 2022(Updated: )
Improper authentication in BIOS firmware[A1] for some Intel(R) NUC Kits before version RY0386 may allow an authenticated user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Nuc Kit Nuc5i3ryh Firmware | <ry0386 | |
Intel Nuc Kit Nuc5i3ryh | ||
Intel Nuc Kit Nuc5i7ryh Firmware | <ry0386 | |
Intel Nuc Kit Nuc5i7ryh | ||
Intel Nuc Kit Nuc5i5ryk Firmware | <ry0386 | |
Intel Nuc Kit Nuc5i5ryk | ||
Intel Nuc Kit Nuc5i5ryh Firmware | <ry0386 | |
Intel Nuc Kit Nuc5i5ryh | ||
Intel Nuc Kit Nuc5i3ryk Firmware | <ry0386 | |
Intel Nuc Kit Nuc5i3ryk | ||
Intel Nuc Kit Nuc5i5ryhs Firmware | <ry0386 | |
Intel Nuc Kit Nuc5i5ryhs | ||
Intel Nuc Kit Nuc5i3ryhs Firmware | <ry0386 | |
Intel Nuc Kit Nuc5i3ryhs | ||
Intel Nuc Kit Nuc5i3ryhsn Firmware | <ry0386 | |
Intel Nuc Kit Nuc5i3ryhsn |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-37345 is a vulnerability in the BIOS firmware for some Intel NUC Kits before version RY0386.
CVE-2022-37345 has a severity rating of 7.8 out of 10.
CVE-2022-37345 may allow an authenticated user to potentially enable escalation of privilege via local access.
Intel NUC Kits NUC5i3RYH, NUC5i7RYH, NUC5i5RYK, NUC5i3RYK, NUC5i5RYHS, NUC5i3RYHS, and NUC5i3RYHSN before version RY0386 are affected by CVE-2022-37345.
To fix CVE-2022-37345, you need to update the BIOS firmware of your affected Intel NUC Kit to version RY0386 or later.