Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-24582

Опубликовано: 12 фев. 2025
Источник: ubuntu
Приоритет: medium
CVSS3: 7.5

Описание

Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.

РелизСтатусПримечание
devel

not-affected

not fixable by OS microcode
esm-infra-legacy/trusty

not-affected

not fixable by OS microcode
esm-infra/bionic

not-affected

not fixable by OS microcode
esm-infra/focal

not-affected

not fixable by OS microcode
esm-infra/xenial

not-affected

not fixable by OS microcode
focal

not-affected

end of standard support, was not-affected [not fixable by OS microcode]
jammy

not-affected

not fixable by OS microcode
noble

not-affected

not fixable by OS microcode
oracular

not-affected

end of life, was not-affected [not fixable by OS microcode]
upstream

needs-triage

Показывать по

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
12 месяцев назад

Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
nvd
12 месяцев назад

Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
debian
12 месяцев назад

Improper input validation in XmlCli feature for UEFI firmware for some ...

CVSS3: 7.5
github
12 месяцев назад

Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
fstec
12 месяцев назад

Уязвимость функции XmlCli микропрограммного обеспечения UEFI процессоров Intel, позволяющая нарушителю повысить свои привилегии

7.5 High

CVSS3