First published: Wed May 10 2023(Updated: )
Improper access control in kernel mode driver for the Intel(R) OFU software before version 14.1.30 may allow a privileged user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel One Boot Flash Update | <14.1.30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-42465 refers to an improper access control vulnerability in the kernel mode driver for Intel(R) OFU software before version 14.1.30.
CVE-2022-42465 is considered to be a high severity vulnerability with a CVSS score of 6.7.
Any user with the Intel One Boot Flash Update software version prior to 14.1.30 may be affected by CVE-2022-42465.
A privileged user with local access may potentially enable escalation of privilege by exploiting CVE-2022-42465.
To fix CVE-2022-42465, users should update their Intel One Boot Flash Update software to version 14.1.30 or above.