CVE-2024-22185

CVSS 3.1 Score 7.2 of 10 (high)

Details

Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 367

Summary

CVE-2024-22185 is a newly disclosed vulnerability affecting some Intel(R) processors with Intel(R) Active Management Technology (AMT). This issue involves a Time-of-check Time-of-use (TOCTTOU) race condition, allowing a privileged user with local access to potentially escalate their privileges. By manipulating the timing between a check and an update, an attacker could exploit this vulnerability to gain higher system access, posing a significant security risk. Intel has advised users to apply security updates to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share