CVE-2024-22185
CVSS 3.1 Score 7.2 of 10 (high)
Details
Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 367
Summary
CVE-2024-22185 is a newly disclosed vulnerability affecting some Intel(R) processors with Intel(R) Active Management Technology (AMT). This issue involves a Time-of-check Time-of-use (TOCTTOU) race condition, allowing a privileged user with local access to potentially escalate their privileges. By manipulating the timing between a check and an update, an attacker could exploit this vulnerability to gain higher system access, posing a significant security risk. Intel has advised users to apply security updates to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.