Incorrect policy enforcement in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows attackers with local or physical access to bypass enforcement of integrity protections via manipulation of firmware storage.
References
Link | Resource |
---|---|
https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00084&languageid=en-fr | Patch Third Party Advisory |
http://www.securityfocus.com/bid/101236 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Information
Published : 2017-10-10 17:29
Updated : 2019-10-02 17:03
NVD link : CVE-2017-5722
Mitre link : CVE-2017-5722
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
intel
- nuc7i3bnk_firmware
- nuc7i3bnh_firmware
- nuc7i5bnh_firmware
- nuc7i5bnk_firmware
- nuc7i5bnk
- nuc7i3bnk
- nuc7i7bnh
- nuc7i7bnh_firmware
- nuc7i5bnh
- nuc7i3bnh