Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2017-5703


Configuration of SPI Flash in platforms based on multiple Intel platforms allow a local attacker to alter the behavior of the SPI flash potentially leading to a Denial of Service.


Security Impact Summary

This vulnerability carries a MEDIUM severity rating with a CVSS v3.1 score of 6.0, requiring local system access to exploit with relatively low complexity without requiring user interaction . The vulnerability impacts and availability (service disruption) for affected systems. Impacting 308 products from intel, from intel, from intel and 305 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

First disclosed in 2018, this vulnerability was reported during a period defined by widespread IoT adoption challenges, mobile security concerns, and the emergence of advanced persistent threat (APT) techniques. Contemporary mitigation strategies focused on secure development practices and third-party component vetting.


Published

2018-04-03T21:29:00.220

Last Modified

2024-11-21T03:28:15.183

Status

Modified

Source

[email protected]

Severity

CVSSv3.0: 6.0 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:N/I:P/A:P

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

3.9

Impact Score

4.9

Weaknesses
  • Type: Primary
    CWE-269

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application intel core_i7-8550u - Yes
Application intel core_i7-8559u - Yes
Application intel core_i7-8650u - Yes
Application intel core_i7-8700 - Yes
Application intel core_i7-8700b - Yes
Application intel core_i7-8700k - Yes
Application intel core_i7-8700t - Yes
Application intel core_i7-8705g - Yes
Application intel core_i7-8706g - Yes
Application intel core_i7-8709g - Yes
Application intel core_i7-8750h - Yes
Application intel core_i7-8809g - Yes
Application intel core_i7-8850h - Yes
Application intel core_i7-7500u - Yes
Application intel core_i7-7560u - Yes
Application intel core_i7-7567u - Yes
Application intel core_i7-7600u - Yes
Application intel core_i7-7660u - Yes
Application intel core_i7-7700 - Yes
Application intel core_i7-7700hq - Yes
Application intel core_i7-7700k - Yes
Application intel core_i7-7700t - Yes
Application intel core_i7-7820eq - Yes
Application intel core_i7-7820hk - Yes
Application intel core_i7-7820hq - Yes
Application intel core_i7-7920hq - Yes
Application intel core_i7-7y75 - Yes
Application intel core_i7-6500u - Yes
Application intel core_i7-6560u - Yes
Application intel core_i7-6567u - Yes
Application intel core_i7-6600u - Yes
Application intel core_i7-6650u - Yes
Application intel core_i7-6660u - Yes
Application intel core_i7-6700 - Yes
Application intel core_i7-6700hq - Yes
Application intel core_i7-6700k - Yes
Application intel core_i7-6700t - Yes
Application intel core_i7-6700te - Yes
Application intel core_i7-6770hq - Yes
Application intel core_i7-6785r - Yes
Application intel core_i7-6820eq - Yes
Application intel core_i7-6820hk - Yes
Application intel core_i7-6820hq - Yes
Application intel core_i7-6822eq - Yes
Application intel core_i7-6870hq - Yes
Application intel core_i7-6920hq - Yes
Application intel core_i7-6970hq - Yes
Application intel core_i7-5500u - Yes
Application intel core_i7-5550u - Yes
Application intel core_i7-5557u - Yes
Application intel core_i7-5600u - Yes
Application intel core_i7-5650u - Yes
Application intel core_i7-5700eq - Yes
Application intel core_i7-5700hq - Yes
Application intel core_i7-5750hq - Yes
Application intel core_i7-5775c - Yes
Application intel core_i7-5775r - Yes
Application intel core_i7-5850eq - Yes
Application intel core_i7-5850hq - Yes
Application intel core_i7-5950hq - Yes
Application intel celeron_n2805 - Yes
Application intel celeron_n2806 - Yes
Application intel celeron_n2807 - Yes
Application intel celeron_n2808 - Yes
Application intel celeron_n2810 - Yes
Application intel celeron_n2815 - Yes
Application intel celeron_n2820 - Yes
Application intel celeron_n2830 - Yes
Application intel celeron_n2840 - Yes
Application intel celeron_n2920 - Yes
Application intel celeron_n3520 - Yes
Application intel pentium_n3520 - Yes
Application intel atom_x5-e3930 - Yes
Application intel atom_x5-e3940 - Yes
Application intel atom_x5-e8000 - Yes
Application intel atom_x5-z8300 - Yes
Application intel atom_x5-z8330 - Yes
Application intel atom_x5-z8350 - Yes
Application intel atom_x5-z8500 - Yes
Application intel atom_x5-z8550 - Yes
Application intel atom_x7-z8700 - Yes
Application intel atom_x7-z8750 - Yes
Application intel pentium_j3710 - Yes
Application intel pentium_n3700 - Yes
Application intel pentium_n3710 - Yes
Application intel celeron_j3060 - Yes
Application intel celeron_j3160 - Yes
Application intel celeron_j3355 - Yes
Application intel celeron_j3455 - Yes
Application intel atom_x5-e8000 - Yes
Application intel pentium_j4205 - Yes
Application intel pentium_n4200 - Yes
Application intel celeron_j3355 - Yes
Application intel celeron_j3455 - Yes
Application intel celeron_n3350 - Yes
Application intel celeron_n3450 - Yes
Application intel atom_x7-e3950 - Yes
Application intel xeon_3104 - Yes
Application intel xeon_3106 - Yes
Application intel xeon_4108 - Yes
Application intel xeon_4109t - Yes
Application intel xeon_4110 - Yes
Application intel xeon_4112 - Yes
Application intel xeon_4114 - Yes
Application intel xeon_4114t - Yes
Application intel xeon_4116 - Yes
Application intel xeon_4116t - Yes
Application intel xeon_5115 - Yes
Application intel xeon_5118 - Yes
Application intel xeon_5119t - Yes
Application intel xeon_5120 - Yes
Application intel xeon_5120t - Yes
Application intel xeon_5122 - Yes
Application intel xeon_6126 - Yes
Application intel xeon_6126f - Yes
Application intel xeon_6126t - Yes
Application intel xeon_6128 - Yes
Application intel xeon_6130 - Yes
Application intel xeon_6130f - Yes
Application intel xeon_6130t - Yes
Application intel xeon_6132 - Yes
Application intel xeon_6134 - Yes
Application intel xeon_6134m - Yes
Application intel xeon_6136 - Yes
Application intel xeon_6138 - Yes
Application intel xeon_6138f - Yes
Application intel xeon_6138t - Yes
Application intel xeon_6140 - Yes
Application intel xeon_6140m - Yes
Application intel xeon_6142 - Yes
Application intel xeon_6142f - Yes
Application intel xeon_6142m - Yes
Application intel xeon_6144 - Yes
Application intel xeon_6146 - Yes
Application intel xeon_6148 - Yes
Application intel xeon_6148f - Yes
Application intel xeon_6150 - Yes
Application intel xeon_6152 - Yes
Application intel xeon_6154 - Yes
Application intel xeon_8153 - Yes
Application intel xeon_8156 - Yes
Application intel xeon_8158 - Yes
Application intel xeon_8160 - Yes
Application intel xeon_8160f - Yes
Application intel xeon_8160m - Yes
Application intel xeon_8160t - Yes
Application intel xeon_8164 - Yes
Application intel xeon_8168 - Yes
Application intel xeon_8170 - Yes
Application intel xeon_8170m - Yes
Application intel xeon_8176 - Yes
Application intel xeon_8176f - Yes
Application intel xeon_8176m - Yes
Application intel xeon_8180 - Yes
Application intel xeon_8180m - Yes
Application intel xeon_e3-1220_v6 - Yes
Application intel xeon_e3-1225_v6 - Yes
Application intel xeon_e3-1230_v6 - Yes
Application intel xeon_e3-1240_v6 - Yes
Application intel xeon_e3-1245_v6 - Yes
Application intel xeon_e3-1270_v6 - Yes
Application intel xeon_e3-1275_v6 - Yes
Application intel xeon_e3-1280_v6 - Yes
Application intel xeon_e3-1285_v6 - Yes
Application intel xeon_e3-1501l_v6 - Yes
Application intel xeon_e3-1501m_v6 - Yes
Application intel xeon_e3-1505l_v6 - Yes
Application intel xeon_e3-1505m_v6 - Yes
Application intel xeon_e3-1535m_v6 - Yes
Application intel xeon_e3-1220_v5 - Yes
Application intel xeon_e3-1225_v5 - Yes
Application intel xeon_e3-1230_v5 - Yes
Application intel xeon_e3-1235l_v5 - Yes
Application intel xeon_e3-1240_v5 - Yes
Application intel xeon_e3-1240l_v5 - Yes
Application intel xeon_e3-1245_v5 - Yes
Application intel xeon_e3-1260l_v5 - Yes
Application intel xeon_e3-1268l_v5 - Yes
Application intel xeon_e3-1270_v5 - Yes
Application intel xeon_e3-1275_v5 - Yes
Application intel xeon_e3-1280_v5 - Yes
Application intel xeon_e3-1505l_v5 - Yes
Application intel xeon_e3-1505m_v5 - Yes
Application intel xeon_e3-1515m_v5 - Yes
Application intel xeon_e3-1535m_v5 - Yes
Application intel xeon_e3-1545m_v5 - Yes
Application intel xeon_e3-1558l_v5 - Yes
Application intel xeon_e3-1565l_v5 - Yes
Application intel xeon_e3-1575m_v5 - Yes
Application intel xeon_e3-1578l_v5 - Yes
Application intel xeon_e3-1585_v5 - Yes
Application intel xeon_e3-1585l_v5 - Yes
Application intel xeon_e7-4809_v4 - Yes
Application intel xeon_e7-4820_v4 - Yes
Application intel xeon_e7-4830_v4 - Yes
Application intel xeon_e7-4850_v4 - Yes
Application intel xeon_e7-8860_v4 - Yes
Application intel xeon_e7-8867_v4 - Yes
Application intel xeon_e7-8870_v4 - Yes
Application intel xeon_e7-8880_v4 - Yes
Application intel xeon_e7-8890_v4 - Yes
Application intel xeon_e7-8891_v4 - Yes
Application intel xeon_e7-8893_v4 - Yes
Application intel xeon_e7-8894_v4 - Yes
Application intel xeon_e7-4809_v3 - Yes
Application intel xeon_e7-4820_v3 - Yes
Application intel xeon_e7-4830_v3 - Yes
Application intel xeon_e7-4850_v3 - Yes
Application intel xeon_e7-8860_v3 - Yes
Application intel xeon_e7-8867_v3 - Yes
Application intel xeon_e7-8870_v3 - Yes
Application intel xeon_e7-8880_v3 - Yes
Application intel xeon_e7-8880l_v3 - Yes
Application intel xeon_e7-8890_v3 - Yes
Application intel xeon_e7-8891_v3 - Yes
Application intel xeon_e7-8893_v3 - Yes
Application intel xeon_e7-2850_v2 - Yes
Application intel xeon_e7-2870_v2 - Yes
Application intel xeon_e7-2880_v2 - Yes
Application intel xeon_e7-2890_v2 - Yes
Application intel xeon_e7-4809_v2 - Yes
Application intel xeon_e7-4820_v2 - Yes
Application intel xeon_e7-4830_v2 - Yes
Application intel xeon_e7-4850_v2 - Yes
Application intel xeon_e7-4860_v2 - Yes
Application intel xeon_e7-4870_v2 - Yes
Application intel xeon_e7-4880_v2 - Yes
Application intel xeon_e7-4890_v2 - Yes
Application intel xeon_e7-8850_v2 - Yes
Application intel xeon_e7-8857_v2 - Yes
Application intel xeon_e7-8870_v2 - Yes
Application intel xeon_e7-8880_v2 - Yes
Application intel xeon_e7-8880l_v2 - Yes
Application intel xeon_e7-8890_v2 - Yes
Application intel xeon_e7-8891_v2 - Yes
Application intel xeon_e7-8893_v2 - Yes
Application intel xeon_phi_7210 - Yes
Application intel xeon_phi_7210f - Yes
Application intel xeon_phi_7230 - Yes
Application intel xeon_phi_7230f - Yes
Application intel xeon_phi_7250 - Yes
Application intel xeon_phi_7250f - Yes
Application intel xeon_phi_7290 - Yes
Application intel xeon_phi_7290f - Yes
Application intel xeon_d-1513n - Yes
Application intel xeon_d-1518 - Yes
Application intel xeon_d-1520 - Yes
Application intel xeon_d-1521 - Yes
Application intel xeon_d-1523n - Yes
Application intel xeon_d-1527 - Yes
Application intel xeon_d-1528 - Yes
Application intel xeon_d-1529 - Yes
Application intel xeon_d-1531 - Yes
Application intel xeon_d-1533n - Yes
Application intel xeon_d-1537 - Yes
Application intel xeon_d-1539 - Yes
Application intel xeon_d-1540 - Yes
Application intel xeon_d-1541 - Yes
Application intel xeon_d-1543n - Yes
Application intel xeon_d-1548 - Yes
Application intel xeon_d-1553n - Yes
Application intel xeon_d-1557 - Yes
Application intel xeon_d-1559 - Yes
Application intel xeon_d-1567 - Yes
Application intel xeon_d-1571 - Yes
Application intel xeon_d-1577 - Yes
Application intel xeon_d-2123it - Yes
Application intel xeon_d-2141i - Yes
Application intel xeon_d-2142it - Yes
Application intel xeon_d-2143it - Yes
Application intel xeon_d-2145nt - Yes
Application intel xeon_d-2146nt - Yes
Application intel xeon_d-2161i - Yes
Application intel xeon_d-2163it - Yes
Application intel xeon_d-2166nt - Yes
Application intel xeon_d-2173it - Yes
Application intel xeon_d-2177nt - Yes
Application intel xeon_d-2183it - Yes
Application intel xeon_d-2187nt - Yes
Application intel atom_c2308 - Yes
Application intel atom_c2316 - Yes
Application intel atom_c2338 - Yes
Application intel atom_c2350 - Yes
Application intel atom_c2358 - Yes
Application intel atom_c2508 - Yes
Application intel atom_c2516 - Yes
Application intel atom_c2518 - Yes
Application intel atom_c2530 - Yes
Application intel atom_c2538 - Yes
Application intel atom_c2550 - Yes
Application intel atom_c2558 - Yes
Application intel atom_c2718 - Yes
Application intel atom_c2730 - Yes
Application intel atom_c2738 - Yes
Application intel atom_c2750 - Yes
Application intel atom_c2758 - Yes
Application intel atom_c3308 - Yes
Application intel atom_c3338 - Yes
Application intel atom_c3508 - Yes
Application intel atom_c3538 - Yes
Application intel atom_c3558 - Yes
Application intel atom_c3708 - Yes
Application intel atom_c3750 - Yes
Application intel atom_c3758 - Yes
Application intel atom_c3808 - Yes
Application intel atom_c3830 - Yes
Application intel atom_c3850 - Yes
Application intel atom_c3858 - Yes
Application intel atom_c3950 - Yes
Application intel atom_c3955 - Yes
Application intel atom_c3958 - Yes

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For intel's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.