Lucene search

K
cveIntelCVE-2023-22310
HistoryNov 14, 2023 - 7:15 p.m.

CVE-2023-22310

2023-11-1419:15:16
CWE-421
CWE-362
intel
web.nvd.nist.gov
15
cve-2023-22310
intel
uefi
firmware
race condition
denial of service
nvd

CVSS3

6.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H

AI Score

4.6

Confidence

High

EPSS

0

Percentile

9.0%

Race condition in some Intelยฎ Aptio* V UEFI Firmware Integrator Tools may allow an authenticated user to potentially enable denial of service via local access.

Affected configurations

Nvd
Node
intelaptio_v_uefi_firmware_integrator_toolsMatch5.27.03.0003
AND
microsoftwindowsMatch-
Node
intelaptio_v_uefi_firmware_integrator_toolsMatch5.27.06.0017
AND
linuxlinux_kernelMatch-
VendorProductVersionCPE
intelaptio_v_uefi_firmware_integrator_tools5.27.03.0003cpe:2.3:a:intel:aptio_v_uefi_firmware_integrator_tools:5.27.03.0003:*:*:*:*:*:*:*
microsoftwindows-cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
intelaptio_v_uefi_firmware_integrator_tools5.27.06.0017cpe:2.3:a:intel:aptio_v_uefi_firmware_integrator_tools:5.27.06.0017:*:*:*:*:*:*:*
linuxlinux_kernel-cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Intel(R) Aptio* V UEFI Firmware Integrator Tools",
    "versions": [
      {
        "version": "See references",
        "status": "affected"
      }
    ],
    "defaultStatus": "unaffected"
  }
]

CVSS3

6.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H

AI Score

4.6

Confidence

High

EPSS

0

Percentile

9.0%

Related for CVE-2023-22310