CVE-2024-39609: High severity intel server board m70klp2sb firmware vulnerability
Published Nov 13, 2024
·Updated
Improper Access Control in UEFI firmware for some Intel(R) Server Board M70KLP may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
2 affected components
All of the following
Intel Server Board M70klp2sb Firmware<01.04.0030
Intel Server Board M70klp2sb
Remediation
Event History
Nov 13, 2024
CVE Published
via MITRE·09:10 PM
Data Sourced
via MITRE·09:10 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-39609?
CVE-2024-39609 is classified as a high severity vulnerability due to improper access control that may allow a privileged user to escalate privileges.
2
How do I fix CVE-2024-39609?
To fix CVE-2024-39609, update the Intel Server Board M70KLP firmware to version 01.04.0030 or later.
3
Who is affected by CVE-2024-39609?
CVE-2024-39609 affects users of the Intel Server Board M70KLP with specific versions of the UEFI firmware.
4
Can CVE-2024-39609 be exploited remotely?
CVE-2024-39609 requires local access to exploit, making remote exploitation unlikely.
5
What can attackers achieve with CVE-2024-39609?
Attackers can leverage CVE-2024-39609 to potentially escalate their privileges on affected devices.