A vulnerability in a subsystem in Intel CSME before version 11.21.55, Intel Server Platform Services before version 4.0 and Intel Trusted Execution Engine Firmware before version 3.1.55 may allow an unauthenticated user to potentially modify or disclose information via physical access.
References
Link | Resource |
---|---|
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00125.html | Vendor Advisory |
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03873en_us | Patch Third Party Advisory |
https://security.netapp.com/advisory/ntap-20180924-0003/ |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2018-09-12 12:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-3655
Mitre link : CVE-2018-3655
JSON object : View
CWE
Products Affected
intel
- server_platform_services_firmware
- converged_security_management_engine_firmware
- trusted_execution_engine_firmware