Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-24582

Опубликовано: 12 фев. 2025
Источник: debian
EPSS Низкий

Описание

Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
intel-microcodefixed3.20250211.1package
intel-microcodefixed3.20250211.1~deb12u1bookwormpackage

Примечания

  • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01139.html

  • https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20250211

EPSS

Процентиль: 8%
0.00029
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
12 месяцев назад

Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
redhat
12 месяцев назад

Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
nvd
12 месяцев назад

Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
github
12 месяцев назад

Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
fstec
12 месяцев назад

Уязвимость функции XmlCli микропрограммного обеспечения UEFI процессоров Intel, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 8%
0.00029
Низкий