← Back

CVE-2018-3652

nvd nist
Published: Jul 10, 2018Modified: Nov 21, 2024

JSON object

Loading...
7.6
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 6.0
Source: NVD

Description

Existing UEFI setting restrictions for DCI (Direct Connect Interface) in 5th and 6th generation Intel Xeon Processor E3 Family, Intel Xeon Scalable processors, and Intel Xeon Processor D Family allows a limited physical presence attacker to potentially access platform secrets via debug interfaces.

Affected (164)

34 products
Xeon E3
Xeon E3 1220 V5
Xeon E3 1220 V6
Xeon E3 1225 V5
Xeon E3 1225 V6
Xeon E3 1230 V5
Xeon E3 1230 V6
Xeon E3 1235l V5
Xeon E3 1240 V5
Xeon E3 1240 V6
Xeon E3 1240l V5
Xeon E3 1245 V5
Xeon E3 1245 V6
Xeon E3 1260l V5
Xeon E3 1268l V5
Xeon E3 1270 V5
Xeon E3 1270 V6
Xeon E3 1275 V5
Xeon E3 1275 V6
Xeon E3 1280 V5
Xeon E3 1280 V6
Xeon E3 1285 V6
Xeon E3 1501l V6
Xeon E3 1501m V6
Xeon E3 1505l V5
Xeon E3 1505l V6
Xeon E3 1505m V5
Xeon Bronze 3104
Xeon Bronze 3106
Xeon Gold
Xeon Platinum
Xeon Silver
Xeon
Atom C
Configuration A
37 vulnerable
Vulnerable SoftwareAffected Versions
Intel
Version 1505m_v6
Version 1515m_v5
Version 1535m_v5
Version 1535m_v6
Version 1545m_v5
Version 1558l_v5
Version 1565l_v5
Version 1575m_v5
Version 1578l_v5
Version 1585_v5
Version 1585l_v5
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
Configuration B
59 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
Intel
Version 5115
Version 5118
Version 5119t
Version 5120
Version 5120t
Version 5122
Version 6126
Version 6126f
Version 6126t
Version 6128
Version 6130
Version 6130f
Version 6130t
Version 6132
Version 6134
Version 6134m
Version 6136
Version 6138
Version 6138f
Version 6138p
Version 6138t
Version 6140
Version 6140m
Version 6142
Version 6142f
Version 6142m
Version 6144
Version 6146
Version 6148
Version 6148f
Version 6150
Version 6152
Version 6154
Intel
Version 8153
Version 8156
Version 8158
Version 8160
Version 8160f
Version 8160m
Version 8160t
Version 8164
Version 8168
Version 8170
Version 8170m
Version 8176
Version 8176f
Version 8176m
Version 8180
Version 8180m
Intel
Version 4108
Version 4109t
Version 4110
Version 4112
Version 4114
Version 4114t
Version 4116
Version 4116t
Configuration C
35 vulnerable
Vulnerable SoftwareAffected Versions
Intel
Version d-1513n
Version d-1518
Version d-1520
Version d-1521
Version d-1523n
Version d-1527
Version d-1528
Version d-1529
Version d-1531
Version d-1533n
Version d-1537
Version d-1539
Version d-1540
Version d-1541
Version d-1543n
Version d-1548
Version d-1553n
Version d-1557
Version d-1559
Version d-1567
Version d-1571
Version d-1577
Version d-2123it
Version d-2141i
Version d-2142it
Version d-2143it
Version d-2145nt
Version d-2146nt
Version d-2161i
Version d-2163it
Version d-2166nt
Version d-2173it
Version d-2177nt
Version d-2183it
Version d-2187nt
Configuration D
33 vulnerable
Vulnerable SoftwareAffected Versions
Intel
Version c2308
Version c2316
Version c2338
Version c2350
Version c2358
Version c2508
Version c2516
Version c2518
Version c2530
Version c2538
Version c2550
Version c2558
Version c2718
Version c2730
Version c2738
Version c2750
Version c2758
Version c3308
Version c3336
Version c3338
Version c3508
Version c3538
Version c3558
Version c3708
Version c3750
Version c3758
Version c3808
Version c3830
Version c3850
Version c3858
Version c3950
Version c3955
Version c3958

References (4)

Source: secure@intel.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationVendor Advisory

Timeline

No history available yet.