CVE-2022-26837

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
16/02/2023
Last modified:
06/03/2023

Description

Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:xeon_gold_5317_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5317:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5318n_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5318n:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5318s_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5318s:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5318y_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5318y:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5320_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5320:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_5320t_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_5320t:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_6312u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:xeon_gold_6312u:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:xeon_gold_6314u_firmware:-:*:*:*:*:*:*:*