Time-of-check time-of-use race condition in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:HIntel Celeron 1000m
HWIntelall versionsIntel Celeron 1000m Firmware
OSIntelall versionsIntel Celeron 1005m
HWIntelall versionsIntel Celeron 1005m Firmware
OSIntelall versionsIntel Celeron 1007u
HWIntelall versionsIntel Celeron 1007u Firmware
OSIntelall versionsIntel Celeron 1017u
HWIntelall versionsIntel Celeron 1017u Firmware
OSIntelall versionsIntel Celeron 1019y
HWIntelall versionsIntel Celeron 1019y Firmware
OSIntelall versionsIntel Celeron 1020e
HWIntelall versionsIntel Celeron 1020e Firmware
OSIntelall versionsIntel Celeron 1020m
HWIntelall versionsIntel Celeron 1020m Firmware
OSIntelall versionsIntel Celeron 1037u
HWIntelall versionsIntel Celeron 1037u Firmware
OSIntelall versionsIntel Celeron 1047ue
HWIntelall versionsIntel Celeron 1047ue Firmware
OSIntelall versionsIntel Celeron 2955u
HWIntelall versionsIntel Celeron 2955u Firmware
OSIntelall versionsIntel Celeron 2957u
HWIntelall versionsIntel Celeron 2957u Firmware
OSIntelall versionsIntel Celeron 2970m
HWIntelall versionsIntel Celeron 2970m Firmware
OSIntelall versionsIntel Celeron 2980u
HWIntelall versionsIntel Celeron 2980u Firmware
OSIntelall versionsIntel Celeron 2981u
HWIntelall versionsIntel Celeron 2981u Firmware
OSIntelall versionsIntel Celeron 3755u
HWIntelall versionsIntel Celeron 3755u Firmware
OSIntelall versions
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
Race Condition
Related vulnerabilities
CVE-2024-0762HIGH7.5same product
Potential buffer overflow in unsafe UEFI variable handling in Phoenix SecureCore™ for select Intel platform...
CVE-2022-36392HIGH8.6same product
Improper input validation in some firmware for Intel(R) AMT and Intel(R) Standard Manageability before version...
CVE-2020-8672HIGH7.8same product
Out of bound read in BIOS firmware for 8th, 9th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 40...
CVE-2019-14557HIGH8.0same product
Buffer overflow in BIOS firmware for 8th, 9th, 10th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processo...
CVE-2024-29979MEDIUM4.6same product
Improper Check for Unusual or Exceptional Conditions vulnerability in Phoenix SecureCore™ for Intel Kaby Lake,...