First published: Fri Aug 11 2023(Updated: )
Exposure of sensitive information to an unauthorized actor in BIOS firmware for some Intel(R) NUCs may allow a privilege user to potentially enable information disclosure via local access.
Credit: secure@intel.com secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Nuc 11 Performance Kit Nuc11pahi70z Firmware | ||
Intel Nuc 11 Performance Kit Nuc11pahi70z | ||
Intel Nuc 11 Performance Kit Nuc11pahi50z Firmware | ||
Intel Nuc 11 Performance Kit Nuc11pahi50z | ||
Intel Nuc 11 Performance Kit Nuc11pahi30z Firmware | ||
Intel Nuc 11 Performance Kit Nuc11pahi30z | ||
Intel Nuc 11 Performance Kit Nuc11pahi3 Firmware | ||
Intel Nuc 11 Performance Kit Nuc11pahi3 | ||
Intel Nuc 11 Performance Kit Nuc11pahi5 Firmware | ||
Intel Nuc 11 Performance Kit Nuc11pahi5 | ||
Intel Nuc 11 Performance Kit Nuc11pahi7 Firmware | ||
Intel Nuc 11 Performance Kit Nuc11pahi7 | ||
Intel Nuc 11 Performance Kit Nuc11paki3 Firmware | ||
Intel Nuc 11 Performance Kit Nuc11paki3 | ||
Intel Nuc 11 Performance Kit Nuc11paki5 Firmware | ||
Intel Nuc 11 Performance Kit Nuc11paki5 | ||
Intel Nuc 11 Performance Kit Nuc11paki7 Firmware | ||
Intel Nuc 11 Performance Kit Nuc11paki7 | ||
Intel Nuc 11 Performance Mini Pc Nuc11paqi50wa Firmware | ||
Intel Nuc 11 Performance Mini Pc Nuc11paqi50wa | ||
Intel Nuc 11 Performance Mini Pc Nuc11paqi70qa Firmware | ||
Intel Nuc 11 Performance Mini Pc Nuc11paqi70qa |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this BIOS firmware vulnerability is CVE-2023-29500.
The severity level of CVE-2023-29500 is medium with a CVSS score of 4.4.
The Intel NUC 11 Performance Kit Nuc11pahi70z, Nuc11pahi50z, Nuc11pahi30z, Nuc11pahi3, Nuc11pahi5, Nuc11pahi7, Nuc11paki3, Nuc11paki5, Nuc11paki7, Nuc11paqi50wa, and Nuc11paqi70qa are affected by CVE-2023-29500.
CVE-2023-29500 may allow a privileged user to enable information disclosure via local access, potentially exposing sensitive information to an unauthorized actor.
You can find more information about CVE-2023-29500 in the Intel Security Center Advisory at http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00892.html.