CVE-2022-24382

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
12/05/2022
Last modified:
05/05/2025

Description

Improper input validation in firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:lapbc510_firmware:*:*:*:*:*:*:*:* bctgl357.0065 (excluding)
cpe:2.3:h:intel:lapbc510:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:lapbc710_firmware:*:*:*:*:*:*:*:* bctgl357.0065 (excluding)
cpe:2.3:h:intel:lapbc710:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:lapkc71f_firmware:*:*:*:*:*:*:*:* kctgl357.0040 (excluding)
cpe:2.3:h:intel:lapkc71f:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:lapkc71e_firmware:*:*:*:*:*:*:*:* kctgl357.0040 (excluding)
cpe:2.3:h:intel:lapkc71e:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:lapkc51e_firmware:*:*:*:*:*:*:*:* kctgl357.0040 (excluding)
cpe:2.3:h:intel:lapkc51e:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc11dbbi9_firmware:*:*:*:*:*:*:*:* dbtgl579.0055 (excluding)
cpe:2.3:h:intel:nuc11dbbi9:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc11dbbi7_firmware:*:*:*:*:*:*:*:* dbtgl579.0055 (excluding)
cpe:2.3:h:intel:nuc11dbbi7:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc11btmi7_firmware:*:*:*:*:*:*:*:* dbtgl579.0055 (excluding)