Intel UEFI ImcErrorHandler Module Privilege Escalation Vulnerability

Vulnerability

A vulnerability has been identified in the UEFI ImcErrorHandler module on certain Intel reference platforms. This vulnerability arises from improper input validation, which may allow a system software adversary with privileged user access to escalate privileges. The issue is associated with high complexity attacks and could potentially be exploited through local access, without requiring special internal knowledge or user interaction. The vulnerability could significantly impact the system's confidentiality, integrity, and availability.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a user to gain elevated rights or access within the system.

Remediation

Users are advised to update to the latest UEFI firmware version provided by their system manufacturer that addresses this vulnerability.

Added: Mar 10, 2026, 11:45 PM
Updated: Mar 10, 2026, 11:45 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
2.4
remediation
0.0
relevance
3.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.