CVE-2022-40971: High severity intel nuc hdmi firmware update tool vulnerability
Incorrect default permissions for the Intel(R) HDMI Firmware Update Tool for NUC before version 1.79.1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-40971?
CVE-2022-40971 is a vulnerability in the Intel(R) HDMI Firmware Update Tool for NUC before version 1.79.1.1 that may allow an authenticated user to potentially enable escalation of privilege via local access.
How can an authenticated user exploit CVE-2022-40971?
An authenticated user can exploit CVE-2022-40971 by taking advantage of the incorrect default permissions in the Intel(R) HDMI Firmware Update Tool for NUC before version 1.79.1.1 to potentially enable escalation of privilege via local access.
What is the severity of CVE-2022-40971?
CVE-2022-40971 has a severity rating of high with a score of 7.8.
Which software versions are affected by CVE-2022-40971?
The Intel(R) HDMI Firmware Update Tool for NUC before version 1.79.1.1 is affected by CVE-2022-40971.
How do I fix CVE-2022-40971?
To fix CVE-2022-40971, update the Intel(R) HDMI Firmware Update Tool for NUC to version 1.79.1.1 or later.