cbcvebase.
CVE-2022-38099
published 2022-11-11

CVE-2022-38099: Improper input validation in BIOS firmware for some Intel(R) NUC 11 Compute Elements before version EBTGL357.0065 may allow a privileged user to potentially…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
Improper input validation in BIOS firmware for some Intel(R) NUC 11 Compute Elements before version EBTGL357.0065 may allow a privileged user to potentially enable escalation of privilege via local access.

Affected

8 ranges
VendorProductVersion rangeFixed in
intelnuc11dbbi7_firmware< ebtgl357.0065ebtgl357.0065
intelnuc11dbbi9_firmware< ebtgl357.0065ebtgl357.0065
intelnuc_11_compute_element_cm11ebc4w_firmware< ebtgl357.0065ebtgl357.0065
intelnuc_11_compute_element_cm11ebi38w_firmware< ebtgl357.0065ebtgl357.0065
intelnuc_11_compute_element_cm11ebi58w_firmware< ebtgl357.0065ebtgl357.0065
intelnuc_11_compute_element_cm11ebi716w_firmware< ebtgl357.0065ebtgl357.0065
intelnuc_11_compute_element_cm11ebv58w_firmware< ebtgl357.0065ebtgl357.0065
intelnuc_11_compute_element_cm11ebv716w_firmware< ebtgl357.0065ebtgl357.0065