logo

Researchers Uncover UEFI Vulnerability Affecting Multiple Intel CPUs

ID: df9ced75-c718-5c93-8504-d2fa98c5d10d

STIX ID: report--df9ced75-c718-5c93-8504-d2fa98c5d10d

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2024-06-20

Date Updated: 2026-05-06

Author: [email protected] (The Hacker News)

...
...

Researchers disclosed CVE-2024-0762 — a patched buffer-overflow flaw in Phoenix SecureCore UEFI that affects many Intel processor families. The vulnerability arises from an unsafe TPM configuration variable and can allow local attackers to escalate privileges and execute code at the UEFI runtime level, posing persistence and supply-chain risks; Phoenix and OEMs (e.g., Lenovo) have released updates.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.