CVE-2023-28396

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
14/02/2024
Last modified:
14/01/2026

Description

Improper access control in firmware for some Intel(R) Thunderbol(TM) Controllers versions before 41 may allow a privileged user to enable denial of service via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:jhl8440_firmware:*:*:*:*:*:*:*:* 41 (excluding)
cpe:2.3:h:intel:jhl8440:-:*:*:*:*:*:*:*