CVE-2022-36372

Improper buffer restrictions in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:intel:nuc_8_compute_element_cm8i3cb4n_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_compute_element_cm8i3cb4n:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:intel:nuc_8_compute_element_cm8i5cb8n_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_compute_element_cm8i5cb8n:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:intel:nuc_8_compute_element_cm8i7cb8n_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_compute_element_cm8i7cb8n:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:intel:nuc_8_compute_element_cm8ccb4r_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_compute_element_cm8ccb4r:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:intel:nuc_8_compute_element_cm8pcb4r_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_compute_element_cm8pcb4r:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:intel:nuc_pro_kit_nuc8i3pnb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_kit_nuc8i3pnb:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:intel:nuc_pro_kit_nuc8i3pnh_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_kit_nuc8i3pnh:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:intel:nuc_pro_kit_nuc8i3pnk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_kit_nuc8i3pnk:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:intel:nuc_pro_board_nuc8i3pnb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_board_nuc8i3pnb:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:intel:nuc_pro_board_nuc8i3pnh_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_board_nuc8i3pnh:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:intel:nuc_pro_board_nuc8i3pnk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_board_nuc8i3pnk:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchb:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchbn_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchbn:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchkrn_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchkrn:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchkr_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchkr:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:intel:nuc_pro_compute_element_nuc9v7qnb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_compute_element_nuc9v7qnb:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:intel:nuc_pro_compute_element_nuc9v7qnx_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_compute_element_nuc9v7qnx:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:intel:nuc_pro_compute_element_nuc9vxqnb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_compute_element_nuc9vxqnb:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:intel:nuc_pro_compute_element_nuc9vxqnx_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_compute_element_nuc9vxqnx:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:intel:nuc_business_nuc8i7hnkqc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_business_nuc8i7hnkqc:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:intel:nuc_business_nuc8i7hvkva_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_business_nuc8i7hvkva:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:intel:nuc_business_nuc8i7hvkvaw_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_business_nuc8i7hvkvaw:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:intel:nuc_business_nuc8i7hvk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_business_nuc8i7hvk:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:intel:nuc_business_nuc8i7hnk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_business_nuc8i7hnk:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:intel:nuc_enthusiast_nuc8i7hnkqc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_enthusiast_nuc8i7hnkqc:-:*:*:*:*:*:*:*

Configuration 26 (hide)

AND
cpe:2.3:o:intel:nuc_enthusiast_nuc8i7hvkva_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_enthusiast_nuc8i7hvkva:-:*:*:*:*:*:*:*

Configuration 27 (hide)

AND
cpe:2.3:o:intel:nuc_enthusiast_nuc8i7hvkvaw_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_enthusiast_nuc8i7hvkvaw:-:*:*:*:*:*:*:*

Configuration 28 (hide)

AND
cpe:2.3:o:intel:nuc_enthusiast_nuc8i7hvk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_enthusiast_nuc8i7hvk:-:*:*:*:*:*:*:*

Configuration 29 (hide)

AND
cpe:2.3:o:intel:nuc_enthusiast_nuc8i7hnk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_enthusiast_nuc8i7hnk:-:*:*:*:*:*:*:*

Configuration 30 (hide)

AND
cpe:2.3:o:intel:nuc_kit_nuc8i7hnkqc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc8i7hnkqc:-:*:*:*:*:*:*:*

Configuration 31 (hide)

AND
cpe:2.3:o:intel:nuc_kit_nuc8i7hvkva_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc8i7hvkva:-:*:*:*:*:*:*:*

Configuration 32 (hide)

AND
cpe:2.3:o:intel:nuc_kit_nuc8i7hvkvaw_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc8i7hvkvaw:-:*:*:*:*:*:*:*

Configuration 33 (hide)

AND
cpe:2.3:o:intel:nuc_kit_nuc8i7hvk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc8i7hvk:-:*:*:*:*:*:*:*

Configuration 34 (hide)

AND
cpe:2.3:o:intel:nuc_kit_nuc8i7hnk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc8i7hnk:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:12

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.7
v2 : unknown
v3 : 7.5
References () http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00917.html - Patch, Vendor Advisory () http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00917.html - Patch, Vendor Advisory

17 Aug 2023, 14:38

Type Values Removed Values Added
CWE CWE-119
References (MISC) http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00917.html - (MISC) http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00917.html - Patch, Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.7
CPE cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchkrn:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_pro_compute_element_nuc9v7qnb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchbn:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_kit_nuc8i3pnh:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_compute_element_cm8pcb4r:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_compute_element_cm8i7cb8n:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_kit_nuc8i3pnk:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_pro_board_nuc8i3pnk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc8i7hnk:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_8_compute_element_cm8pcb4r_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_kit_nuc8i7hnk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_enthusiast_nuc8i7hvkvaw:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_pro_kit_nuc8i3pnh_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_business_nuc8i7hvk:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_business_nuc8i7hvkva_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_business_nuc8i7hvkvaw_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_compute_element_nuc9vxqnx:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_enthusiast_nuc8i7hvk:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_compute_element_cm8i3cb4n:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_enthusiast_nuc8i7hnk:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_pro_kit_nuc8i3pnk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_pro_board_nuc8i3pnb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_8_compute_element_cm8i5cb8n_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchb:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_8_compute_element_cm8i3cb4n_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_business_nuc8i7hnkqc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_pro_board_nuc8i3pnh_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_8_compute_element_cm8ccb4r_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_8_compute_element_cm8i7cb8n_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_board_nuc8i3pnk:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_compute_element_cm8i5cb8n:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchkr_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_rugged_kit_nuc8cchkr:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_kit_nuc8i7hvk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_business_nuc8i7hnk:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_kit_nuc8i7hvkvaw_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_business_nuc8i7hvk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_8_compute_element_cm8ccb4r:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_pro_compute_element_nuc9vxqnx_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_business_nuc8i7hvkva:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_pro_compute_element_nuc9vxqnb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_board_nuc8i3pnh:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_business_nuc8i7hnkqc:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_enthusiast_nuc8i7hvkva_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_enthusiast_nuc8i7hnk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchbn_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_compute_element_nuc9v7qnb:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_compute_element_nuc9v7qnx:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_kit_nuc8i7hvkva_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_rugged_kit_nuc8cchkrn_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc8i7hnkqc:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_enthusiast_nuc8i7hvkvaw_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc8i7hvk:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_enthusiast_nuc8i7hvkva:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_pro_compute_element_nuc9v7qnx_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_business_nuc8i7hnk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_pro_kit_nuc8i3pnb_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_business_nuc8i7hvkvaw:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc8i7hvkvaw:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_enthusiast_nuc8i7hnkqc:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc8i7hvkva:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_board_nuc8i3pnb:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_kit_nuc8i3pnb:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_pro_compute_element_nuc9vxqnb:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_enthusiast_nuc8i7hvk_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_kit_nuc8i7hnkqc_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:nuc_enthusiast_nuc8i7hnkqc_firmware:-:*:*:*:*:*:*:*

11 Aug 2023, 03:44

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-11 03:15

Updated : 2024-11-21 07:12


NVD link : CVE-2022-36372

Mitre link : CVE-2022-36372

CVE.ORG link : CVE-2022-36372


JSON object : View

Products Affected

intel

  • nuc_8_compute_element_cm8i7cb8n_firmware
  • nuc_business_nuc8i7hnkqc
  • nuc_enthusiast_nuc8i7hvk_firmware
  • nuc_business_nuc8i7hvkva
  • nuc_pro_kit_nuc8i3pnb_firmware
  • nuc_rugged_kit_nuc8cchb
  • nuc_business_nuc8i7hvkva_firmware
  • nuc_enthusiast_nuc8i7hvkva
  • nuc_8_compute_element_cm8i3cb4n_firmware
  • nuc_business_nuc8i7hvkvaw_firmware
  • nuc_business_nuc8i7hvkvaw
  • nuc_pro_board_nuc8i3pnk
  • nuc_kit_nuc8i7hnk
  • nuc_rugged_kit_nuc8cchkrn_firmware
  • nuc_pro_kit_nuc8i3pnh_firmware
  • nuc_enthusiast_nuc8i7hnkqc_firmware
  • nuc_8_compute_element_cm8ccb4r
  • nuc_8_compute_element_cm8pcb4r_firmware
  • nuc_8_compute_element_cm8ccb4r_firmware
  • nuc_business_nuc8i7hnkqc_firmware
  • nuc_kit_nuc8i7hnkqc
  • nuc_8_compute_element_cm8i5cb8n_firmware
  • nuc_pro_compute_element_nuc9vxqnx_firmware
  • nuc_pro_compute_element_nuc9vxqnb_firmware
  • nuc_pro_compute_element_nuc9v7qnx_firmware
  • nuc_pro_kit_nuc8i3pnk
  • nuc_8_compute_element_cm8i5cb8n
  • nuc_pro_board_nuc8i3pnb_firmware
  • nuc_business_nuc8i7hnk_firmware
  • nuc_pro_compute_element_nuc9vxqnx
  • nuc_kit_nuc8i7hvk
  • nuc_rugged_kit_nuc8cchbn
  • nuc_rugged_kit_nuc8cchkr
  • nuc_pro_board_nuc8i3pnh_firmware
  • nuc_pro_kit_nuc8i3pnk_firmware
  • nuc_pro_kit_nuc8i3pnb
  • nuc_business_nuc8i7hnk
  • nuc_enthusiast_nuc8i7hvkva_firmware
  • nuc_kit_nuc8i7hnk_firmware
  • nuc_pro_compute_element_nuc9vxqnb
  • nuc_business_nuc8i7hvk_firmware
  • nuc_enthusiast_nuc8i7hvkvaw_firmware
  • nuc_pro_kit_nuc8i3pnh
  • nuc_business_nuc8i7hvk
  • nuc_kit_nuc8i7hnkqc_firmware
  • nuc_8_compute_element_cm8pcb4r
  • nuc_enthusiast_nuc8i7hvkvaw
  • nuc_enthusiast_nuc8i7hnk
  • nuc_kit_nuc8i7hvkvaw
  • nuc_pro_compute_element_nuc9v7qnb
  • nuc_enthusiast_nuc8i7hnk_firmware
  • nuc_kit_nuc8i7hvkva
  • nuc_enthusiast_nuc8i7hvk
  • nuc_pro_board_nuc8i3pnb
  • nuc_pro_compute_element_nuc9v7qnx
  • nuc_rugged_kit_nuc8cchbn_firmware
  • nuc_pro_board_nuc8i3pnk_firmware
  • nuc_kit_nuc8i7hvk_firmware
  • nuc_kit_nuc8i7hvkvaw_firmware
  • nuc_8_compute_element_cm8i7cb8n
  • nuc_8_compute_element_cm8i3cb4n
  • nuc_rugged_kit_nuc8cchkr_firmware
  • nuc_pro_board_nuc8i3pnh
  • nuc_rugged_kit_nuc8cchb_firmware
  • nuc_kit_nuc8i7hvkva_firmware
  • nuc_rugged_kit_nuc8cchkrn
  • nuc_pro_compute_element_nuc9v7qnb_firmware
  • nuc_enthusiast_nuc8i7hnkqc
CWE
CWE-92

DEPRECATED: Improper Sanitization of Custom Special Characters

CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer