CVE-2024-28947Improper Input Validation in Intel Server Board S2600st Firmware

Severity
7.1HIGHNVD
EPSS
0.1%
top 74.21%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 14

Description

Improper input validation in kernel mode driver for some Intel(R) Server Board S2600ST Family firmware before version 02.01.0017 may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-5fw8-xf44-fpcj: Improper input validation in kernel mode driver for some Intel(R) Server Board S2600ST Family firmware before version 022024-08-14
CVEList
CVE-2024-28947: Improper input validation in kernel mode driver for some Intel(R) Server Board S2600ST Family firmware before version 022024-08-14
CVE-2024-28947 — Improper Input Validation in Intel | cvebase