CVE-2022-43505 describes an insufficient control flow management vulnerability in the BIOS firmware of certain Intel Processors. This flaw could allow a privileged local user to trigger a denial of service. With a CVSS score of 4.4 (Medium), exploitation requires local access and high privileges, but has low attack complexity and no user interaction, leading to a high impact on availability. Currently, there is no known public exploit code, Metasploit modules, or Nuclei templates, and it is not listed in the CISA KEV catalog. Community discussion and media coverage are minimal, suggesting low active exploitation or widespread attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:pentium_j6426_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:pentium_j4205_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:pentium_j3710_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:pentium_j2900_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:pentium_j2850_firmware:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.