CVE-2024-31157

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Feb 12, 2025
CWE ID 665

Summary

CVE-2024-31157 is a security vulnerability affecting certain Intel Processors. The issue lies in the UEFI firmware OutOfBandXML module, where improper initialization can occur. A privileged user with local access can potentially exploit this flaw, leading to information disclosure. This vulnerability poses a risk to system security and should be addressed by applying the recommended security updates.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share