CVE-2018-3616
12.09.2018, 19:29
Bleichenbacher-style side channel vulnerability in TLS implementation in Intel Active Management Technology before 12.0.5 may allow an unauthenticated user to potentially obtain the TLS session key via the network.Enginsight
Vendor | Product | Version |
---|---|---|
intel | converged_security_management_engine_firmware | 11.0.0 ≤ 𝑥 < 12.0.5 |
intel | active_management_technology_firmware | 𝑥 < 12.0.5 |
intel | manageability_engine_firmware | 9.0.0.0 ≤ 𝑥 < 11.0 |
siemens | simatic_field_pg_m5_firmware | 𝑥 < 22.01.06 |
siemens | simatic_ipc427e_firmware | 𝑥 < 21.01.09 |
siemens | simatic_ipc477e_firmware | 𝑥 < 21.01.09 |
siemens | simatic_ipc547e_firmware | 𝑥 < r1.30.0 |
siemens | simatic_pc547g_firmware | 𝑥 < r1.23.0 |
siemens | simatic_ipc627d_firmware | 𝑥 < 19.02.11 |
siemens | simatic_ipc647d_firmware | 𝑥 < 19.01.14 |
siemens | simatic_ipc677d_firmware | 𝑥 < 19.02.11 |
siemens | simatic_ipc827d_firmware | 𝑥 < 19.02.11 |
siemens | simatic_ipc847d_firmware | 𝑥 < 19.01.14 |
siemens | simatic_itp1000_firmware | 𝑥 < 23.01.04 |
𝑥
= Vulnerable software versions
References