First published: Fri Aug 11 2023(Updated: )
Exposure of sensitive information to an unauthorized actor in BIOS firmware for some Intel(R) NUCs may allow a privilege user to potentially enable information disclosure via local access.
Credit: secure@intel.com secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel NUC 11 Performance (Tiger Lake) Firmware | ||
Intel NUC 11 Performance Kit NUC11PAHi70Z Firmware | ||
Intel NUC 11 Performance (Tiger Lake) Firmware | ||
Intel NUC 11 Performance Kit NUC11PAHI50Z Firmware | ||
Intel NUC 11 Performance Kit NUC11PAHi3 | ||
Intel NUC 11 Performance Kit | ||
Intel NUC 11 Performance Kit NUC11PAHi3 | ||
Intel NUC 11 Performance Kit NUC11PAHi3 Firmware | ||
Intel NUC 11 Performance (Tiger Lake) Firmware | ||
Intel NUC 11 Performance Kit NUC11TNHi5 | ||
Intel NUC 11 Performance (Tiger Lake) Firmware | ||
Intel NUC 11 Performance Kit NUC11PAHi7 Firmware | ||
Intel NUC 11 Performance Kit NUC11PAKi3 | ||
Intel NUC 11 Pro Kit NUC11PAKi3 | ||
Intel NUC 11 Performance (Tiger Lake) Firmware | ||
Intel NUC 11 Performance Kit NUC11PAKI5 Firmware | ||
Intel NUC 11 Performance Kit NUC11PAKI7 | ||
Intel NUC 11 Performance Mini PC NUC11PAKI7 | ||
Intel NUC 11 Performance Mini PC (NUC11BTMi9) | ||
Intel NUC 11 Performance Mini PC NUC11PAQI50WA Firmware | ||
Intel NUC 11 Performance Kit NUC11PAQi7 | ||
Intel NUC 11 Performance Mini PC |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this BIOS firmware vulnerability is CVE-2023-29500.
The severity level of CVE-2023-29500 is medium with a CVSS score of 4.4.
The Intel NUC 11 Performance Kit Nuc11pahi70z, Nuc11pahi50z, Nuc11pahi30z, Nuc11pahi3, Nuc11pahi5, Nuc11pahi7, Nuc11paki3, Nuc11paki5, Nuc11paki7, Nuc11paqi50wa, and Nuc11paqi70qa are affected by CVE-2023-29500.
CVE-2023-29500 may allow a privileged user to enable information disclosure via local access, potentially exposing sensitive information to an unauthorized actor.
You can find more information about CVE-2023-29500 in the Intel Security Center Advisory at http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00892.html.