6.7

CVE-2022-29262

Improper buffer restrictions in some Intel(R) Server Board BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Server Board M70klp2sb Firmware Version < 01.04.0022
   Intel ≫ Server Board M70klp2sb Version -
Intel ≫ Server System M70klp4s2uhh Firmware Version < 01.04.0022
   Intel ≫ Server System M70klp4s2uhh Version -
Intel ≫ Server Board M20ntp2sb Firmware Version < 0022.d02
   Intel ≫ Server Board M20ntp2sb Version -
Intel ≫ Server Board M10jnp2sb Firmware Version < 7.219
   Intel ≫ Server Board M10jnp2sb Version -
Intel ≫ Server Board S2600bpbr Firmware Version < 02.01.0015
   Intel ≫ Server Board S2600bpbr Version -
Intel ≫ Server Board S2600bps Firmware Version < 02.01.0015
   Intel ≫ Server Board S2600bps Version -
Intel ≫ Server Board S2600bpsr Firmware Version < 02.01.0015
   Intel ≫ Server Board S2600bpsr Version -
Intel ≫ Server Board S2600bpqr Firmware Version < 02.01.0015
   Intel ≫ Server Board S2600bpqr Version -
Intel ≫ Server Board S2600bpb Firmware Version < 02.01.0015
   Intel ≫ Server Board S2600bpb Version -
Intel ≫ Server Board S2600bpq Firmware Version < 02.01.0015
   Intel ≫ Server Board S2600bpq Version -
Intel ≫ Compute Module Hns2600bpblc Firmware Version < 02.01.0015
   Intel ≫ Compute Module Hns2600bpblc Version -
Intel ≫ Compute Module Hns2600bps Firmware Version < 02.01.0015
   Intel ≫ Compute Module Hns2600bps Version -
Intel ≫ Compute Module Hns2600bps24 Firmware Version < 02.01.0015
   Intel ≫ Compute Module Hns2600bps24 Version -
Intel ≫ Compute Module Hns2600bpbr Firmware Version < 02.01.0015
   Intel ≫ Compute Module Hns2600bpbr Version -
Intel ≫ Compute Module Hns2600bpqr Firmware Version < 02.01.0015
   Intel ≫ Compute Module Hns2600bpqr Version -
Intel ≫ Compute Module Hns2600bpsr Firmware Version < 02.01.0015
   Intel ≫ Compute Module Hns2600bpsr Version -
Intel ≫ Compute Module Hns2600bpb24 Firmware Version < 02.01.0015
   Intel ≫ Compute Module Hns2600bpb24 Version -
Intel ≫ Compute Module Hns2600bpb Firmware Version < 02.01.0015
   Intel ≫ Compute Module Hns2600bpb Version -
Intel ≫ Compute Module Hns2600bpq Firmware Version < 02.01.0015
   Intel ≫ Compute Module Hns2600bpq Version -
Intel ≫ Compute Module Hns2600bpq24 Firmware Version < 02.01.0015
   Intel ≫ Compute Module Hns2600bpq24 Version -
Intel ≫ Server System Vrn2224bpaf6 Firmware Version < 02.01.0015
   Intel ≫ Server System Vrn2224bpaf6 Version -
Intel ≫ Server System Vrn2224bphy6 Firmware Version < 02.01.0015
   Intel ≫ Server System Vrn2224bphy6 Version -
Intel ≫ Server System Mcb2208wfaf5 Firmware Version < 02.01.0015
   Intel ≫ Server System Mcb2208wfaf5 Version -
Intel ≫ Server System Zsb2224bpaf2 Firmware Version < 02.01.0015
   Intel ≫ Server System Zsb2224bpaf2 Version -
Intel ≫ Server System Zsb2224bphy1 Firmware Version < 02.01.0015
   Intel ≫ Server System Zsb2224bphy1 Version -
Intel ≫ Server System Zsb2224bpaf1 Firmware Version < 02.01.0015
   Intel ≫ Server System Zsb2224bpaf1 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.21% 0.114
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Intel 7.9 1.5 5.8
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H
CWE-92 DEPRECATED: Improper Sanitization of Custom Special Characters

This entry has been deprecated. It originally came from PLOVER, which sometimes defined "other" and "miscellaneous" categories in order to satisfy exhaustiveness requirements for taxonomies. Within the context of CWE, the use of a more abstract entry is preferred in mapping situations. CWE-75 is a more appropriate mapping.

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00719.html
Patch
Vendor Advisory