CVE-2024-36262

CVSS 3.1 Score 7.2 of 10 (high)

Details

Published Feb 12, 2025
CWE ID 362

Summary

CVE-2024-36262 is a newly disclosed vulnerability affecting some Intel System Security Report and System Resources Defense firmware. A race condition has been identified, enabling a privileged user to potentially exploit the issue and escalate their privileges through local access. The vulnerability could pose a significant risk if exploited, underscoring the importance of keeping firmware updated with the latest security patches. Intel is expected to release a fix to address this issue soon. In the meantime, organizations and individuals should be cautious and ensure that only trusted and authorized users have access to the affected systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share