CVE-2024-28947: Input Validation
Published Aug 14, 2024
·Updated
Improper input validation in kernel mode driver for some Intel(R) Server Board S2600ST Family firmware before version 02.01.0017 may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
1 affected component
Intel Server Board S2600st Firmware<02.01.0017
Event History
Aug 14, 2024
CVE Published
via MITRE·01:45 PM
Data Sourced
via MITRE·01:45 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-28947?
CVE-2024-28947 is classified as a high-severity vulnerability due to the potential for privilege escalation.
2
How do I fix CVE-2024-28947?
To remediate CVE-2024-28947, update the Intel Server Board S2600ST firmware to version 02.01.0017 or later.
3
Who is impacted by CVE-2024-28947?
CVE-2024-28947 affects users of the Intel Server Board S2600ST Family firmware versions prior to 02.01.0017.
4
What kind of vulnerability is CVE-2024-28947?
CVE-2024-28947 is an improper input validation vulnerability in a kernel mode driver.
5
Can CVE-2024-28947 be exploited remotely?
CVE-2024-28947 requires local access to exploit, as it allows privilege escalation for a privileged user.