Security Flaw in SecureCore UEFI Could Affect Hundreds of PCs and Servers
A flaw in Phoenix's SecureCore UEFI could allow code execution and privilege escalation, affecting hundreds of PC models and servers.

A newly discovered security vulnerability can affect hundreds of computer models and servers using Intel processors. The high-severity security vulnerability was found in Phoenix Technologies' SecureCore UEFI firmware solution.
The security vulnerability, named "UEFIcanhazbufferoverflow," was discovered by cybersecurity firm Eclypsium. This vulnerability can be exploited by a local attacker to escalate privileges and execute arbitrary code within the UEFI firmware.
The cybersecurity firm warned that such a vulnerability could be used in various threats, such as the Black Lotus UEFI rootkit. "This security vulnerability exemplifies two characteristic features of events in the IT infrastructure value chain: high impact and broad access. UEFI product software is one of the most valuable codes in modern devices, and compromising this code in any way can provide attackers with full and permanent control over the device," writes Eclypsium.
Phoenix Technologies has already addressed and patched the vulnerability, and device manufacturers have started offering the fix to their products.
Source: Security Vulnerability in SecureCore UEFI Could Affect Hundreds of PCs and Servers (itsecurity.pt)