Intel Uefi Firmware vulnerabilities

5 known vulnerabilities affecting intel/uefi_firmware.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM4

Vulnerabilities

Page 1 of 1
CVE-2022-38076HIGHCVSS 7.8fixed in 3.2.20.230232023-08-11
CVE-2022-38076 [LOW] CWE-20 CVE-2022-38076: Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may all Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2022-46329MEDIUMCVSS 6.7fixed in 3.2.20.230232023-08-11
CVE-2022-46329 [HIGH] CWE-693 CVE-2022-46329: Protection mechanism failure for some Intel(R) PROSet/Wireless WiFi software may allow a privileged Protection mechanism failure for some Intel(R) PROSet/Wireless WiFi software may allow a privileged user to potentially enable escalation of privilege via local access.
nvd
CVE-2022-40964MEDIUMCVSS 6.7fixed in 3.2.20.230232023-08-11
CVE-2022-40964 [HIGH] CWE-284 CVE-2022-40964: Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allo Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user to potentially enable escalation of privilege via local access.
nvd
CVE-2022-36351MEDIUMCVSS 6.5fixed in 3.2.20.230232023-08-11
CVE-2022-36351 [MEDIUM] CWE-20 CVE-2022-36351: Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may all Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an unauthenticated user to potentially enable denial of service via adjacent access.
nvd
CVE-2022-27635MEDIUMCVSS 6.7fixed in 3.2.20.230232023-08-11
CVE-2022-27635 [HIGH] CWE-284 CVE-2022-27635: Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allo Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user to potentially enable escalation of privilege via local access.
nvd