CVE-2024-39279

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Feb 12, 2025
CWE ID 1220

Summary

CVE-2024-39279 is a vulnerability affecting certain Intel(R) processors. The issue lies in the UEFI firmware's access control, which is found to be insufficiently granular. An authenticated user with local access can potentially exploit this vulnerability to cause a denial of service. The precise nature of the attack and the extent of the impact on various Intel processor models are still under investigation. However, it is clear that this vulnerability poses a potential risk to system availability and should be addressed promptly through appropriate firmware updates or patches.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share