Out-of-bounds write in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow a privileged user to potentially enable escalation of privilege via local access.
2020-06-15T14:15:11.080
2024-11-21T04:53:42.197
Modified
CVSSv3.1: 6.7 (MEDIUM)
AV:L/AC:L/Au:N/C:P/I:P/A:P
3.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | intel | converged_security_management_engine_firmware | < 12.0.64 | Yes |
Operating System | intel | converged_security_management_engine_firmware | < 13.0.32 | Yes |
Operating System | intel | converged_security_management_engine_firmware | < 14.0.33 | Yes |
Operating System | intel | converged_security_management_engine_firmware | 14.5.11 | Yes |