CVE-2022-26124

Improper buffer restrictions in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC 8 Boards, Intel(R) NUC 8 Rugged Boards and Intel(R) NUC 8 Rugged Kits before version CHAPLCEL.0059 may allow a privileged user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:intel:nuc_8_rugged_kit_nuc8cchkrn_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_rugged_kit_nuc8cchkrn:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:intel:nuc_8_rugged_kit_nuc8cchkr_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_rugged_kit_nuc8cchkr:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:intel:nuc_8_rugged_board_nuc8cchbn_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_rugged_board_nuc8cchbn:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:intel:nuc_board_nuc8cchb_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_board_nuc8cchb:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:53

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 7.5
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00752.html - Patch, Vendor Advisory () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00752.html - Patch, Vendor Advisory

Information

Published : 2022-11-11 16:15

Updated : 2024-11-21 06:53


NVD link : CVE-2022-26124

Mitre link : CVE-2022-26124

CVE.ORG link : CVE-2022-26124


JSON object : View

Products Affected

intel

  • nuc_board_nuc8cchb_firmware
  • nuc_8_rugged_kit_nuc8cchkr_firmware
  • nuc_8_rugged_kit_nuc8cchkrn
  • nuc_8_rugged_kit_nuc8cchkrn_firmware
  • nuc_8_rugged_board_nuc8cchbn
  • nuc_8_rugged_kit_nuc8cchkr
  • nuc_board_nuc8cchb
  • nuc_8_rugged_board_nuc8cchbn_firmware
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer