Описание
Multiple buffer overflows in Intel AMT in Intel CSME firmware versions before version 12.0.5 may allow a privileged user to potentially execute arbitrary code with Intel AMT execution privilege via local access.
Multiple buffer overflows in Intel AMT in Intel CSME firmware versions before version 12.0.5 may allow a privileged user to potentially execute arbitrary code with Intel AMT execution privilege via local access.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2018-3657
- https://cert-portal.siemens.com/productcert/pdf/ssa-377318.pdf
- https://ics-cert.us-cert.gov/advisories/ICSA-19-043-05
- https://security.netapp.com/advisory/ntap-20180924-0003
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03876en_us
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00141.html
- http://www.securityfocus.com/bid/106996
Связанные уязвимости
Multiple buffer overflows in Intel AMT in Intel CSME firmware versions before version 12.0.5 may allow a privileged user to potentially execute arbitrary code with Intel AMT execution privilege via local access.
Уязвимость реализации технологии Intel Active Management Technology (AMT) микропрограммного обеспечения Intel Converged Security and Manageability Engine и Intel Management Engine, позволяющая нарушителю выполнить произвольный код с привилегиями AMT