CVE-2022-32577 — Improper Input Validation in Intel Nuc5cpyh Firmware
Severity
6.0MEDIUMNVD
CNA3.4
EPSS
0.1%
top 79.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 10
Description
Improper input validation in BIOS Firmware for some Intel(R) NUC Kits before version PY0081 may allow a privileged user to potentially enable information disclosure or denial of service via local access
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:HExploitability: 0.8 | Impact: 5.2
Affected Packages3 packages
Patches
🔴Vulnerability Details
2GHSA▶
GHSA-q6fh-mpmh-2hch: Improper input validation in BIOS Firmware for some Intel(R) NUC Kits before version PY0081 may allow a privileged user to potentially enable informat↗2023-05-10
CVEList▶
CVE-2022-32577: Improper input validation in BIOS Firmware for some Intel(R) NUC Kits before version PY0081 may allow a privileged user to potentially enable informat↗2023-05-10