Insufficient access protection in firmware in Intel Server Board, Intel Server System and Intel Compute Module before firmware version 00.01.0014 may allow an unauthenticated attacker to potentially execute arbitrary code resulting in information disclosure, escalation of privilege and/or denial of service via local access.

Project Subscriptions

Vendors Products
Compute Module Hns2600bp Subscribe
Compute Module Hns2600bp Firmware Subscribe
Compute Module Hns2600bpr Subscribe
Compute Module Hns2600bpr Firmware Subscribe
Server Board S2600bp Subscribe
Server Board S2600bp Firmware Subscribe
Server Board S2600bpr Subscribe
Server Board S2600bpr Firmware Subscribe
Server Board S2600st Subscribe
Server Board S2600st Firmware Subscribe
Server Board S2600str Subscribe
Server Board S2600str Firmware Subscribe
Server Board S2600wf Subscribe
Server Board S2600wf Firmware Subscribe
Server Board S2600wfr Subscribe
Server Board S2600wfr Firmware Subscribe
Server System H2000g Subscribe
Server System H2000g Firmware Subscribe
Server System H2000gr Subscribe
Server System H2000gr Firmware Subscribe
Server System R1000wf Subscribe
Server System R1000wf Firmware Subscribe
Server System R1000wfr Subscribe
Server System R1000wfr Firmware Subscribe
Server System R2000wf Subscribe
Server System R2000wf Firmware Subscribe
Server System R2000wfr Subscribe
Server System R2000wfr Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2018-4151 Insufficient access protection in firmware in Intel Server Board, Intel Server System and Intel Compute Module before firmware version 00.01.0014 may allow an unauthenticated attacker to potentially execute arbitrary code resulting in information disclosure, escalation of privilege and/or denial of service via local access.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2024-09-16T16:18:34.131Z

Reserved: 2018-06-11T00:00:00

Link: CVE-2018-12173

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-10-10T18:29:04.373

Modified: 2024-11-21T03:44:41.757

Link: CVE-2018-12173

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses