Insecure inherited permissions for some Intel(R) NUC 9 Extreme Laptop Kit LAN Drivers before version 10.42 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HIntel Lapqc71a
HWIntelall versionsIntel Lapqc71a Firmware
OSIntel< 10.42Intel Lapqc71b
HWIntelall versionsIntel Lapqc71b Firmware
OSIntel< 10.42Intel Lapqc71c
HWIntelall versionsIntel Lapqc71c Firmware
OSIntel< 10.42Intel Lapqc71d
HWIntelall versionsIntel Lapqc71d Firmware
OSIntel< 10.42
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
CWE
Related vulnerabilities
CVE-2022-34147HIGH7.5same product
Improper input validation in BIOS firmware for some Intel(R) NUC 9 Extreme Laptop Kits, Intel(R) NUC Performan...
CVE-2022-21229HIGH7.8same product
Improper buffer restrictions for some Intel(R) NUC 9 Extreme Laptop Kit drivers before version 2.2.0.22 may al...
CVE-2021-0196HIGH7.8same product
Improper access control in kernel mode driver for some Intel(R) NUC 9 Extreme Laptop Kits before version 2.2.0...
CVE-2021-45046CRITICAL9.0⚠ KEVPL ✓same vendor
Apache Log4j: niekompletna naprawa CVE-2021-44228 — RCE przez JNDI Lookup
CVE-2021-44228CRITICAL10.0⚠ KEVPL ✓same vendor
Apache Log4j2 Log4Shell — RCE przez podatną funkcję JNDI lookup