HIGH🇵🇱 Wersja polska

CVE-2024-1598

CVSS 7.5v3.1pub. 2024-05-14upd. 2025-09-25

Potential buffer overflow in unsafe UEFI variable handling in Phoenix SecureCore™ for Intel Gemini Lake.This issue affects: SecureCore™ for Intel Gemini Lake: from 4.1.0.1 before 4.1.0.567.

CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
  • Intel Celeron N4020

    HW
    Intel
    all versions
  • Phoenixtech Securecore Technology

    OS
    Phoenixtech
    4.1.0.1 – 4.1.0.567 (excl.)
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Memory
CWE
References

Related vulnerabilities

CVE-2024-0762HIGH7.5same product

Potential buffer overflow in unsafe UEFI variable handling in Phoenix SecureCore™ for select Intel platform...

CVE-2023-5058HIGH7.8same product

Improper Input Validation in the processing of user-supplied splash screen during system boot in Phoenix Secur...

CVE-2023-31100HIGH8.4same product

Improper Access Control in SMI handler vulnerability in Phoenix SecureCore™ Technology™ 4 allows SPI flash mod...

CVE-2022-38102HIGH7.2same product

Improper Input validation in firmware for some Intel(R) Converged Security and Management Engine before versio...

CVE-2020-24489HIGH8.8same product

Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escala...