CVE-2024-28947: Input Validation
Improper input validation in kernel mode driver for some Intel(R) Server Board S2600ST Family firmware before version 02.01.0017 may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Intel(R) Server Board S2600ST Family firmwareto a version that resolves this vulnerability.Fixed in 02.01.0017
Event History
Frequently Asked Questions
What is the severity of CVE-2024-28947?
CVE-2024-28947 is classified as a high-severity vulnerability due to the potential for privilege escalation.
How do I fix CVE-2024-28947?
To remediate CVE-2024-28947, update the Intel Server Board S2600ST firmware to version 02.01.0017 or later.
Who is impacted by CVE-2024-28947?
CVE-2024-28947 affects users of the Intel Server Board S2600ST Family firmware versions prior to 02.01.0017.
What kind of vulnerability is CVE-2024-28947?
CVE-2024-28947 is an improper input validation vulnerability in a kernel mode driver.
Can CVE-2024-28947 be exploited remotely?
CVE-2024-28947 requires local access to exploit, as it allows privilege escalation for a privileged user.