CVE-2024-39279: Input Validation
CVE-2024-39279 Insufficient granularity of access control in UEFI firmware in some Intel(R) processors may allow a authenticated user to potentially enable denial of service via local access. CVE-2024-28047 Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-39279?
CVE-2024-39279 is classified as a medium-severity vulnerability due to its potential to enable denial of service.
How do I fix CVE-2024-39279?
To mitigate CVE-2024-39279, users should update their Intel UEFI firmware to the latest version provided by Intel.
Who is affected by CVE-2024-39279?
CVE-2024-39279 affects systems that utilize specific Intel UEFI firmware in their processors.
What can an authenticated user do regarding CVE-2024-39279?
An authenticated user may exploit CVE-2024-39279 to potentially enable denial of service through local access.
What is the nature of the access control issue in CVE-2024-39279?
CVE-2024-39279 involves insufficient granularity of access control in UEFI firmware, allowing unauthorized actions by authenticated users.