CVE-2022-27497

Null pointer dereference in firmware for Intel(R) AMT before version 11.8.93, 11.22.93, 11.12.93, 12.0.92, 14.1.67, 15.0.42, 16.1.25 may allow an unauthenticated user to potentially enable denial of service via network access.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*

History

22 May 2023, 15:27

Type Values Removed Values Added
CPE cpe:2.3:a:intel:active_management_technology:*:*:*:*:*:*:*:* cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
First Time Intel active Management Technology Firmware

17 Nov 2022, 13:08

Type Values Removed Values Added
References (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00610.html - (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00610.html - Vendor Advisory
CWE CWE-476
First Time Intel
Intel active Management Technology
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CPE cpe:2.3:a:intel:active_management_technology:*:*:*:*:*:*:*:*

11 Nov 2022, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-11-11 16:15

Updated : 2023-12-10 14:35


NVD link : CVE-2022-27497

Mitre link : CVE-2022-27497

CVE.ORG link : CVE-2022-27497


JSON object : View

Products Affected

intel

  • active_management_technology_firmware
CWE
CWE-476

NULL Pointer Dereference