‘Phoenix SecureCore UEFI Vulnerability Allows ‘UEFIcanhazbufferoverflow’ Attack on Intel Processors”

‘Phoenix SecureCore UEFI Vulnerability Allows ‘UEFIcanhazbufferoverflow’ Attack on Intel Processors”

A new vulnerability known as “UEFIcanhazbufferoverflow,” identified as CVE-2024-0762, has been discovered in the Phoenix SecureCore UEFI firmware, impacting various desktop and mobile Intel Core processors. This vulnerability, disclosed by cybersecurity researchers, exposes a critical buffer overflow issue within the Trusted Platform Module (TPM) configuration, potentially enabling unauthorized code execution by malicious actors. Eclypsium, a … Read more

Bug in Phoenix SecureCore UEFI firmware impacts Intel processors, reports TechTarget

Bug in Phoenix SecureCore UEFI firmware impacts Intel processors, reports TechTarget

A recent study by Eclypsium has revealed a vulnerability in the Phoenix SecureCore UEFI firmware that affects various Intel processors and hundreds of computer models. This flaw, known as CVE-2024-0762 or “UEFIcanhazbufferoverflow,” has been assigned a CVSS score of 7.5 and involves an unsafe variable in the Trusted Platform Module (TPM) configuration that could potentially … Read more