CVE-2023-34438

Severity CVSS v4.0:
Pending analysis
Type:
CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Publication date:
11/08/2023
Last modified:
07/11/2023

Description

Race condition in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchb:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchbn_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchbn:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchkrn_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchkrn:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchkr_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchkr:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_kit_nuc6cayh_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc6cayh:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_kit_nuc6cays_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc6cays:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_mini_pc_nuc7i3bnhxf_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_mini_pc_nuc7i3bnhxf:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_mini_pc_nuc7i3bnk_firmware:-:*:*:*:*:*:*:*