Intel has publicly disclosed two highseverity vulnerabilities that affect a wide variety of Intel chip families and allow threat actors and malware to gain elevated privileges on the system.
Unfortunately, adding a BIOS password will not fully prevent you from this attack, as the weaknesses can be exploited remotely if the attacker has gained access to the system.