PT-2025-2403 · Phoenix · Phoenix Securecore™ For Intel Coffee Lake+1

Published

2025-01-14

·

Updated

2025-09-25

·

CVE-2024-29980

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions: Phoenix SecureCore™ for Intel Kaby Lake versions prior to 4.0.1.1012 Phoenix SecureCore™ for Intel Coffee Lake versions prior to 4.1.0.568 Phoenix SecureCore™ for Intel Comet Lake versions prior to 4.2.1.292 Phoenix SecureCore™ for Intel Ice Lake versions prior to 4.2.0.334
Description: The issue is related to an improper check for unusual or exceptional conditions, allowing input data manipulation. This affects the Phoenix SecureCore™ software for various Intel processor generations.
Recommendations: For Phoenix SecureCore™ for Intel Kaby Lake versions prior to 4.0.1.1012, update to version 4.0.1.1012 or later. For Phoenix SecureCore™ for Intel Coffee Lake versions prior to 4.1.0.568, update to version 4.1.0.568 or later. For Phoenix SecureCore™ for Intel Comet Lake versions prior to 4.2.1.292, update to version 4.2.1.292 or later. For Phoenix SecureCore™ for Intel Ice Lake versions prior to 4.2.0.334, update to version 4.2.0.334 or later.

Fix

Improper Check for Exceptional Conditions

Weakness Enumeration

Related Identifiers

CVE-2024-29980

Affected Products

Phoenix Securecore™ For Intel Coffee Lake
Phoenix Securecore™ For Intel Kaby Lake