CVE-2018-12191
EUVD-2018-416914.03.2019, 20:29
Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before versions 4.00.04.383 or SPS 4.01.02.174, or Intel(R) TXE before versions 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially execute arbitrary code via physical access.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| intel | converged_security_management_engine_firmware | 11.0 ≤ 𝑥 < 11.8.60 |
| intel | converged_security_management_engine_firmware | 11.10 ≤ 𝑥 < 11.11.60 |
| intel | converged_security_management_engine_firmware | 11.20 ≤ 𝑥 < 11.22.60 |
| intel | converged_security_management_engine_firmware | 12.0.0 ≤ 𝑥 < 12.0.20 |
| intel | server_platform_services_firmware | 4.00.04.367 ≤ 𝑥 < 4.00.04.383 |
| intel | server_platform_services_firmware | 4.01.00.152.0 ≤ 𝑥 < 4.01.02.174 |
| intel | trusted_execution_engine_firmware | 3.0 ≤ 𝑥 < 3.1.60 |
| intel | trusted_execution_engine_firmware | 4.0 ≤ 𝑥 < 4.0.10 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References