Researchers Uncover UEFI Vulnerability Affecting Multiple Intel CPUs
ID: df9ced75-c718-5c93-8504-d2fa98c5d10d
STIX ID: report--df9ced75-c718-5c93-8504-d2fa98c5d10d
Feed Name: The Hacker News
Threat Score
Researchers disclosed CVE-2024-0762 — a patched buffer-overflow flaw in Phoenix SecureCore UEFI that affects many Intel processor families. The vulnerability arises from an unsafe TPM configuration variable and can allow local attackers to escalate privileges and execute code at the UEFI runtime level, posing persistence and supply-chain risks; Phoenix and OEMs (e.g., Lenovo) have released updates.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
