CVE-2024-24582: Input Validation
Published Feb 12, 2025
·Updated
Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.
Affected Software
1 affected component
Intel Uefi Firmware
Event History
Feb 12, 2025
CVE Published
via MITRE·09:19 PM
Data Sourced
via MITRE·09:19 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-24582?
CVE-2024-24582 is classified as a high severity vulnerability due to the potential for privilege escalation.
2
How do I fix CVE-2024-24582?
To fix CVE-2024-24582, you should update the Intel UEFI firmware to the latest version provided by Intel.
3
Who is affected by CVE-2024-24582?
CVE-2024-24582 affects users of specific Intel UEFI firmware designed for certain Intel processors.
4
What type of vulnerability is CVE-2024-24582?
CVE-2024-24582 is an improper input validation vulnerability that can enable privilege escalation.
5
Can CVE-2024-24582 be exploited remotely?
No, CVE-2024-24582 requires local access for exploitation, making it a local privilege escalation vulnerability.