Get the latest tech news

Firmware flaw affects numerous generations of Intel CPUs — UEFI code execution vulnerability found for Intel CPUs from 14th Gen Raptor Lake to 6th Gen Skylake CPUs, and TPM will not save you


Eclypsium Automata uncovers Phoenix as the latest to fall to a significant Arbitrary Code Execution exploit impacting Lenovo, AMI, Insyde, and Intel motherboard firmware.

The specific Phoenix SecureCore UEFI firmware vulnerability that prompted this posting is referred to as "UEFIcanhazbufferoverflow" by Eclypsium, which is just a funny way of pointing out that this is a buffer overflow exploit. In the BIOS or its modern counterpart, the UEFI, even a buffer overflow allows for full-system access and control to be gained very quickly, and the consequences of that happening can be challenging to remove from a PC permanently. Since exploits impacting UEFI are as close to Layer 0 as they get with PC hardware, it's essential for all parties involved to act as quickly and safely as possible.

Get the Android app

Or read this on r/technology

Read more on:

Photo of Intel

Intel

Photo of Firmware

Firmware

Photo of intel cpus

intel cpus

Related news:

News photo

Intel 3 Represents an Intel Foundry Milestone

News photo

Phoenix UEFI flaw puts long list of Intel chips in hot seat

News photo

Intel Lunar Lake Workload Hints & Power Floor Patches Posted For Linux