CVE-2024-36242

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 693

Summary

CVE-2024-36242 is a recently disclosed vulnerability affecting the Security Policy Profile (SPP) in some Intel(R) Processors. This issue involves a protection mechanism failure that could potentially enable an authenticated user to escalate their privileges through local access. By exploiting this vulnerability, an attacker may gain elevated system access, leading to significant security implications for affected systems. It is essential for Intel users to apply the appropriate security patches as soon as they become available to mitigate this risk. The exact details of the exploitation technique and potential impact remain under investigation by cybersecurity experts.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share