CVE-2018-12191
14.03.2019, 20:29
Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before versions 4.00.04.383 or SPS 4.01.02.174, or Intel(R) TXE before versions 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially execute arbitrary code via physical access.Enginsight
Vendor | Product | Version |
---|---|---|
intel | converged_security_management_engine_firmware | 11.0 ≤ 𝑥 < 11.8.60 |
intel | converged_security_management_engine_firmware | 11.10 ≤ 𝑥 < 11.11.60 |
intel | converged_security_management_engine_firmware | 11.20 ≤ 𝑥 < 11.22.60 |
intel | converged_security_management_engine_firmware | 12.0.0 ≤ 𝑥 < 12.0.20 |
intel | server_platform_services_firmware | 4.00.04.367 ≤ 𝑥 < 4.00.04.383 |
intel | server_platform_services_firmware | 4.01.00.152.0 ≤ 𝑥 < 4.01.02.174 |
intel | trusted_execution_engine_firmware | 3.0 ≤ 𝑥 < 3.1.60 |
intel | trusted_execution_engine_firmware | 4.0 ≤ 𝑥 < 4.0.10 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References