VYPR
Unrated severityNVD Advisory· Published May 10, 2023· Updated Feb 13, 2025

CVE-2022-33894

CVE-2022-33894

Description

Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Improper input validation in BIOS firmware of certain Intel processors allows a privileged local attacker to escalate privileges.

Vulnerability

Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. Affected versions are detailed in Intel security advisory INTEL-SA-00807 [1].

Exploitation

An attacker with local access and privileged user status can exploit this vulnerability by sending specially crafted input to the BIOS firmware, bypassing input validation checks. The exact steps are not publicly detailed but require local access and elevated privileges.

Impact

Successful exploitation could allow the attacker to escalate privileges, potentially gaining higher-level access within the system. This could lead to full compromise of the affected platform.

Mitigation

Intel has released firmware updates to address this vulnerability. Users should update their BIOS/UEFI firmware to the latest version provided by their system manufacturer. Refer to Intel security advisory INTEL-SA-00807 [1] for details on affected processors and fixed versions.

References
  1. INTEL-SA-00807

AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.