Intel AMT Null Pointer Deref NSPR via Network (Unauth DoS, before 16.1.25)
CVE-2022-27497 Published on November 11, 2022

Null pointer dereference in firmware for Intel(R) AMT before version 11.8.93, 11.22.93, 11.12.93, 12.0.92, 14.1.67, 15.0.42, 16.1.25 may allow an unauthenticated user to potentially enable denial of service via network access.

NVD

Weakness Type

NULL Pointer Dereference

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit. NULL pointer dereference issues can occur through a number of flaws, including race conditions, and simple programming omissions.


Products Associated with CVE-2022-27497

stack.watch emails you whenever new vulnerabilities are published in Intel Active Management Technology or Intel Active Management Technology Firmware. Just hit a watch button to start following.

 
 

Exploit Probability

EPSS
0.51%
Percentile
66.08%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.