First published: Wed Nov 13 2024(Updated: )
Improper input validation in UEFI firmware in some Intel(R) Server Board M10JNP2SB Family may allow a privileged user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Intel M10JNP2SB | <=7.220 | |
Intel M10JNP2SB firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-41167 has been classified with a high severity level due to its potential for privilege escalation.
To mitigate CVE-2024-41167, update the UEFI firmware to a version higher than 7.220 for applicable Intel Server Board M10JNP2SB Family models.
CVE-2024-41167 affects users of Intel Server Board M10JNP2SB Family with versions of UEFI firmware up to and including 7.220.
CVE-2024-41167 is due to improper input validation in UEFI firmware, allowing potential escalation of privilege by a local privileged user.
CVE-2024-41167 requires local access, meaning it cannot be exploited remotely without physical or local system access.