PT-2024-7105 · Intel · Intel Converged Security/Manageability Engine

Published

2024-08-13

·

Updated

2024-08-14

·

CVE-2023-34424

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Intel Converged Security and Manageability Engine (CSME) (affected versions not specified)
Description The issue is related to insufficient input validation in the Intel Converged Security and Manageability Engine (CSME) firmware, which may allow a privileged user to potentially cause a denial of service via local access.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2024-08372
CVE-2023-34424

Affected Products

Intel Converged Security/Manageability Engine