← Back

CVE-2018-12191

nvd nist
Published: Mar 14, 2019Modified: Nov 21, 2024

JSON object

Loading...
7.6
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 6.0
Source: NVD

Description

Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before versions 4.00.04.383 or SPS 4.01.02.174, or Intel(R) TXE before versions 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially execute arbitrary code via physical access.

Affected (8)

3 products
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Intel
From 11.0 to 11.8.60
From 11.10 to 11.11.60
From 11.20 to 11.22.60
From 12.0.0 to 12.0.20
Intel
From 4.00.04.367 to 4.00.04.383
From 4.01.00.152.0 to 4.01.02.174
Intel
From 3.0 to 3.1.60
From 4.0 to 4.0.10

References (6)

Source: secure@intel.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.