Описание
Improper input validation in UEFI firmware CseVariableStorageSmm for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | microcode_ctl | Not affected | ||
| Red Hat Enterprise Linux 8 | microcode_ctl | Affected | ||
| Red Hat Enterprise Linux 7.7 Advanced Update Support | microcode_ctl | Fixed | RHBA-2025:2428 | 06.03.2025 |
| Red Hat Enterprise Linux 7 Extended Lifecycle Support | microcode_ctl | Fixed | RHEA-2025:2427 | 06.03.2025 |
| Red Hat Enterprise Linux 8.2 Advanced Update Support | microcode_ctl | Fixed | RHEA-2025:2424 | 06.03.2025 |
| Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | microcode_ctl | Fixed | RHEA-2025:2423 | 06.03.2025 |
| Red Hat Enterprise Linux 8.4 Telecommunications Update Service | microcode_ctl | Fixed | RHEA-2025:2423 | 06.03.2025 |
| Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions | microcode_ctl | Fixed | RHEA-2025:2423 | 06.03.2025 |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | microcode_ctl | Fixed | RHEA-2025:2422 | 06.03.2025 |
| Red Hat Enterprise Linux 8.6 Telecommunications Update Service | microcode_ctl | Fixed | RHEA-2025:2422 | 06.03.2025 |
Показывать по
Дополнительная информация
Статус:
EPSS
7.5 High
CVSS3
Связанные уязвимости
Improper input validation in UEFI firmware CseVariableStorageSmm for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Improper input validation in UEFI firmware CseVariableStorageSmm for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Improper input validation in UEFI firmware CseVariableStorageSmm for s ...
Improper input validation in UEFI firmware CseVariableStorageSmm for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Уязвимость модуля CseVariableStorageSmm микропрограммного обеспечения UEFI процессоров Intel, позволяющая нарушителю повысить свои привилегии
EPSS
7.5 High
CVSS3