CVE-2024-24981

Improper input validation in PfrSmiUpdateFw driver in UEFI firmware for some Intel(R) Server M50FCP Family products may allow a privileged user to enable escalation of privilege via local access.
Configurations

No configuration.

History

21 Nov 2024, 09:00

Type Values Removed Values Added
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01080.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01080.html -

03 Jul 2024, 01:48

Type Values Removed Values Added
CWE CWE-269
Summary
  • (es) La validación de entrada incorrecta en el controlador PfrSmiUpdateFw en el firmware UEFI para algunos productos de la familia Intel(R) Server M50FCP puede permitir que un usuario privilegiado habilite la escalada de privilegios a través del acceso local.

16 May 2024, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-16 21:16

Updated : 2024-11-21 09:00


NVD link : CVE-2024-24981

Mitre link : CVE-2024-24981

CVE.ORG link : CVE-2024-24981


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation

CWE-269

Improper Privilege Management