CVE-2023-25756
CVSS 3.1 Score 8.0 of 10 (high)
Details
Summary
CVE-2023-25756 is an out-of-bounds read vulnerability affecting certain Intel(R) Processors in their BIOS firmware. This issue allows an authenticated user to potentially gain escalated privileges through adjacent access. The vulnerability occurs due to the BIOS firmware's failure to properly handle memory requests, enabling attackers to read sensitive data beyond their authorized bounds. This could potentially lead to privilege escalation and unauthorized system access. Intel has released updates to address this vulnerability, and users are advised to install them promptly to protect their systems.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Intel Corp.