Intel CPUs Under Siege: New UEFICANHAZBUFFEROVERFLOW Bug Puts Millions at Risk

Intel CPUs hit by “UEFICANHAZBUFFEROVERFLOW” bug, found in Phoenix SecureCore UEFI firmware, allowing remote malicious code execution. Affected models include Alder Lake, Coffee Lake, and more. Lenovo has released firmware updates, but users should check with their manufacturers for patches.

Hot Take:

Intel’s new CPU vulnerability is like discovering your high-tech security system has been using cardboard cutouts as guards. Seriously, who knew “UEFICANHAZBUFFEROVERFLOW” wasn’t just a bad meme?

Key Points:

  • New vulnerability CVE-2024-0762 found in Intel CPUs, dubbed “UEFICANHAZBUFFEROVERFLOW”.
  • Bug affects a wide range of Intel CPUs including Alder Lake, Coffee Lake, Comet Lake, and more.
  • Discovered in Phoenix SecureCore UEFI firmware, specifically in the System Management Mode (SMM) subsystem.
  • Allows threat actors to remotely execute malicious code by exploiting a buffer overflow.
  • Lenovo released firmware updates to fix the issue; other manufacturers may take longer.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here