Intel Security Updates – 15 November 2023

Intel has released security updates to fix several vulnerabilities across multiple products.

The addressed vulnerabilities could allow the attacker to obtain sensitive information, gain elevated privileges, or trigger a denial of services attack on the affected system.

Sample of the addressed vulnerabilities:

1. Intel NUC Software Privilege Escalation Vulnerability (CVE-2023-28737):

  • CVSS: 8.8
  • Attack Vector: Local
  • Attack Complexity: Low
  • Privileges Required: Low
  • User Interaction: None
  • Consequences: Gain Privileges

2. Intel Unison Software Denial of Service Vulnerability (CVE-2023-22337):

  • CVSS: 7.5
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: None
  • Consequences: Denial of Service
Vulnerabilities
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Intel Security Center

References