PT-2024-1880 · Intel · Intel(R) Sur

Sim0Nsecurity

·

Published

2024-02-13

·

Updated

2024-10-24

·

CVE-2023-39941

CVSS v3.1

7.1

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) SUR software versions prior to 2.4.10587
Description The issue is related to improper access control in Intel(R) SUR software, which may allow an unauthenticated user to potentially enable denial of service via adjacent access. This could be exploited by a remote attacker to cause a denial of service.
Recommendations For versions prior to 2.4.10587, update to version 2.4.10587 or later to resolve the issue. As a temporary workaround, consider restricting access to the software to minimize the risk of exploitation.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2024-01645
CVE-2023-39941

Affected Products

Intel(R) Sur