PT-2023-13470 · Intel · Intel Battery Life Diagnostic Tool

Hamdan Thabit

·

Published

2023-02-16

·

Updated

2023-08-08

·

CVE-2022-36278

CVSS v3.1

8.2

High

VectorAV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) Battery Life Diagnostic Tool versions prior to 2.2.0
Description The issue is related to insufficient control flow management, which may allow an authenticated user to potentially enable escalation of privilege via local access.
Recommendations For versions prior to 2.2.0, update to version 2.2.0 or later to resolve the issue. As a temporary workaround, consider restricting local access to the Intel(R) Battery Life Diagnostic Tool software until the update is applied.

Fix

Related Identifiers

CVE-2022-36278

Affected Products

Intel Battery Life Diagnostic Tool