Improper buffer restrictions in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow an authenticated user to potentially enable escalation of privilege, information disclosure or denial of service via local access.
2020-06-15T14:15:11.127
2024-11-21T04:53:42.333
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:P/I:P/A:P
3.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | intel | converged_security_management_engine_firmware | < 11.8.77 | Yes |
Operating System | intel | converged_security_management_engine_firmware | < 11.12.77 | Yes |
Operating System | intel | converged_security_management_engine_firmware | < 11.22.77 | Yes |
Operating System | intel | converged_security_management_engine_firmware | < 12.0.64 | Yes |
Operating System | intel | converged_security_management_engine_firmware | < 13.0.32 | Yes |
Operating System | intel | converged_security_management_engine_firmware | < 14.0.33 | Yes |
Operating System | intel | converged_security_management_engine_firmware | 14.5.11 | Yes |