CVE-2023-25949

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Nov 14, 2023
Updated: Nov 20, 2023
CWE ID 400

Summary

CVE-2023-25949 is a vulnerability affecting some Intel(R) Aptio* V UEFI Firmware Integrator Tools. This issue involves uncontrolled resource consumption, allowing an authenticated user, via local access, the potential to trigger denial-of-service conditions. By exploiting this vulnerability, an attacker could cause affected systems to become unresponsive or unavailable, disrupting normal operations. This vulnerability poses a risk to organizations and individuals using the susceptible UEFI firmware integrator tools and emphasizes the importance of applying the available patches promptly to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share